Keycloak: create and update users and restrict delete user using admin REST APIs

22 views
Skip to first unread message

Syed Shahwar Shah

unread,
Sep 1, 2025, 2:46:32 AM (6 days ago) Sep 1
to Keycloak User
Keycloak version 24+

In keycloak How can we strict client service account roles to just view, create and update users using REST APIs? Delete user shouldn't be allowed.

Keycloak default has manage-users role which includes delete users as well. There is no separate role for create and update user. Tried to check scope based roles, but there is also no scope available for create and update.
Reply all
Reply to author
Forward
0 new messages