Keycloak 介绍
Keycloak 是一个为浏览器和 RESTful Web 服务提供 SSO 的集成。基于 OAuth 2.0 和 JSON Web Token(JWT)
规范。最开始是面向 JBoss 和 Wildfly 通讯,但已经计划为其他诸如 Tomcat、Jetty、Node.js、Rails、Grails
等环境提供解决方案。
主要功能:
-
SSO and Single Log Out for browser applications
-
Social broker. Enable Google, Facebook, Yahoo, Twitter social login with no code required.
-
Optional User Registration
-
Password and TOTP support (via Google Authenticator). Client cert auth coming soon.
-
Customizable themes for user facing pages
-
OAuth Bearer token auth for REST Services
-
Integrated browser App to REST Service token propagation
-
OAuth 2.0 Grant requests
-
CORS Support
-
CORS Web Origin management and validation
-
Completely centrally managed user and role mapping Metadata. Minimal configuration at the application side
-
Admin Console for managing users, roles, role mappings, applications, user sessions, allowed CORS web origins, and OAuth clients.
-
Deployable as a WAR, appliance, or an Openshift cloud service (SaaS).
-
Supports JBoss AS7, EAP 6.x, and Wildfly applications. Plans to support Node.js, RAILS, GRAILS, and other non-Java applications.
-
Javascript/HTML 5 adapter for pure Javascript apps
-
Session management from admin console
-
Revocation policies
-
Password policies
-
OpenID Connect Support
Keycloak 官网
版权声明:本文内容由互联网用户自发贡献,该文观点与技术仅代表作者本人。本站仅提供信息存储空间服务,不拥有所有权,不承担相关法律责任。如发现本站有涉嫌侵权/违法违规的内容, 请发送邮件至 [email protected] 举报,一经查实,本站将立刻删除。