Inquiry: Keycloak Integration with OpenVAS

64 views
Skip to first unread message

Le Sok

unread,
Apr 23, 2025, 3:12:16 AM4/23/25
to Keycloak User
Dear Team,

I hope you're doing well.

I am currently exploring the possibility of integrating **Keycloak** as an identity provider (IdP) with **OpenVAS**, and I would appreciate your guidance.

Our objective is to allow users to access the OpenVAS web interface and be redirected to Keycloak for authentication using **username and password**, along with **OTP (if multi-factor authentication is enabled)**. After successful authentication via Keycloak, the user should then be redirected back to OpenVAS and granted access.

Could you please clarify the following:
- Does OpenVAS support integration with Keycloak using **OpenID Connect (OIDC)** or **SAML 2.0**?
- Can OTP (TOTP or other MFA methods) enforced through Keycloak be supported within the OpenVAS login flow?
- Are there any known plugins, reverse proxies, or middleware components required to make this integration work?

Best regards,  
Thank you in advance for your support. I look forward to hearing from you.

Björn Pedersen

unread,
Apr 25, 2025, 3:55:48 AM4/25/25
to Keycloak User
Le Sok schrieb am Mittwoch, 23. April 2025 um 09:12:16 UTC+2:
Dear Team,

I hope you're doing well.

I am currently exploring the possibility of integrating **Keycloak** as an identity provider (IdP) with **OpenVAS**, and I would appreciate your guidance.

Our objective is to allow users to access the OpenVAS web interface and be redirected to Keycloak for authentication using **username and password**, along with **OTP (if multi-factor authentication is enabled)**. After successful authentication via Keycloak, the user should then be redirected back to OpenVAS and granted access.

Could you please clarify the following:
- Does OpenVAS support integration with Keycloak using **OpenID Connect (OIDC)** or **SAML 2.0**?

  This you should aks the openVAS devs
 
- Can OTP (TOTP or other MFA methods) enforced through Keycloak be supported within the OpenVAS login flow?

If OIDC or SAML works, yes that can be achieved.
 
- Are there any known plugins, reverse proxies, or middleware components required to make this integration work?


Again, this is a question for openVAS, not keycloak.
Reply all
Reply to author
Forward
0 new messages