4 ms·
We use Keycloak (hooked up to FreeIPA) which will try to authenticate against Kerberos and then fall back to a regular login screen or a cookie for more limited
by 0x6019 9y ago
We use Keycloak (hooked up to FreeIPA) which will try to authenticate against Kerberos and then fall back to a regular login screen or a cookie for more limited SSO. The actual web apps are configured with OpenID Connect or SAML and don't know anything about Kerberos.
- icebraining 9y agoKeycloak is interesting, thanks.
- emmelaich 9y agohttp://www.keycloak.org/ http://www.keycloak.org/ looks fantastic. btw, https doesn't work, the cert indicates github