Dear Team,
I hope you're doing well.
I am currently exploring the possibility of integrating **Keycloak** as an identity provider (IdP) with **OpenVAS**, and I would appreciate your guidance.
Our objective is to allow users to access the OpenVAS web interface and be redirected to Keycloak for authentication using **username and password**, along with **OTP (if multi-factor authentication is enabled)**. After successful authentication via Keycloak, the user should then be redirected back to OpenVAS and granted access.
Could you please clarify the following:
- Does OpenVAS support integration with Keycloak using **OpenID Connect (OIDC)** or **SAML 2.0**?
- Can OTP (TOTP or other MFA methods) enforced through Keycloak be supported within the OpenVAS login flow?
- Are there any known plugins, reverse proxies, or middleware components required to make this integration work?
Best regards,
Thank you in advance for your support. I look forward to hearing from you.