4 ms·
Looks like Keycloak's certificate is only valid with `www.`: https://www.keycloak.org/ https://www.keycloak.org/ > - Keycloak (you won't get fired for picking
by dastx 6y ago
Looks like Keycloak's certificate is only valid with `www.`: https://www.keycloak.org/ https://www.keycloak.org/
> - Keycloak (you won't get fired for picking this)[0]
Curious what you mean with "you won't get fired for picking this". Do you mean that it's good and easy to run, or something else?
- scrollaway 6y agoKeycloak is used by enterprise a lot. ISPs, Banks, etc. So it's a pretty safe choice if you are in that space.
- codefined 6y agoI think it comes from the phrase "no one ever got fired for buying IBM". Here, Keycloak is the incumbent for organisations.
- mooreds 6y agoIf you are looking for an open source solution, it is definitely the 800 lb gorilla. If you are looking for a commercial solution, I would say that the top competitors are Okta, Auth0, Azure AD, and Firebase (though the latter, from what I've heard, doesn't play nicely with standards).
- hardwaresofton 6y agoAnd now that Okta and Auth0 are the same, the big two options are Okta/Auth0 and Azure AD. I don't know how much Firebase gets used at scale but the price "scales" so well that I think most people switch off of it after the MVP validation phase. Just conjecture though, no numbers to back that up -- an enterprise client is probably not going to use your product because it has Firebase login integration.
- robertlagrant 6y agoI wouldn't say they're the same thing except from a brand name perspective. Okta is barely app-focused; much more enterprise SSO. Auth0 is extremely app-focused, although they can do some enterprise SSO as well. Okta bought Stormpath (and killed it) and now Auth0 because of this difference, and because there's a finite total addressable market for employees, but an almost infinite total addressable market for app users.
- mooreds 6y ago> And now that Okta and Auth0 are the same, the big two options are Okta/Auth0 and Azure AD. I mean, it's yet to be determined how Okta and Auth0 are going to integrate. I have read that Okta has three sets of APIs, maybe Auth0 will be a fourth? > an enterprise client is probably not going to use your product because it has Firebase login integration. LOL. It might even be a negative signal. But I hear Firebase is thinking about supporting standard OAuth, which would be great.
- zokier 6y agoAlso noting that these days IBM is the main force behind Keycloak (through RedHat acquisition), so the saying fits even better.
- hardwaresofton 6y agoAppreciate the correction, got to it in time! And as others have noted, this is probably the most enterprise-grade/production-hardened solution out there in the list that I made that represents my current list in the F/OSS space. If I were to think hard about it, there are probably lots of much older options (depends on where you put the scope of AuthN to be, is LDAP a competitor?), but Keycloak is probably the one you're going to find the most resources and scrutiny around. A large financial institution I worked with two years ago was using Keycloak. I was annoyed with some UI bits and terminology that was very confusing but it was overall a great choice back then IMO, has probably mostly/only gotten better since.