please-open.it

205 posts

please-open.it banner
please-open.it

please-open.it

@PleaseOpen_It

keycloak as a service on @clever_cloud We can help you on your authentication

France Katılım Aralık 2017
14 Takip Edilen192 Takipçiler
please-open.it
please-open.it@PleaseOpen_It·
European Companies: if you host your data with a US cloud provider, you are not GDPR-compliant. ⚠️ The Cloud Act overrides data location. Yes, even if your servers are in Europe. ⬇️ blog.please-open.it/posts/cloud-ac…
English
0
3
5
312
please-open.it
please-open.it@PleaseOpen_It·
An authentication proxy is the best pattern for deploying SSO on existing and new apps. The proxy is in charge of the authentication mechanism, the application receive authenticated requests with the user's details in HTTP Headers. blog.please-open.it/posts/auth-pro…
English
0
1
1
158
please-open.it
please-open.it@PleaseOpen_It·
@hanxhx_ @YodaBZH @sebi2706 @clever_cloudFR @keycloak super merci ! est-ce que tu as essayé de provisionner plutôt directement depuis un export de royaume ? Est-ce que le provisioning qu'on te propose via les variables pour créer un client "opentofu" suffiraient pas ?
Français
1
0
1
153
Clever Cloud FR
Clever Cloud FR@clever_cloudFR·
[𝗤𝗨𝗢𝗜 𝗗𝗘 𝗡𝗘𝗨𝗙] Clever Cloud évolue. Une plateforme plus flexible, un K8S managé qui arrive, 2 nouveaux points de présence, un PaaS MAJ en continu, des services managés renforcés et une Console en refonte. Un cloud qui s’adapte à vos usages : clever.cloud/fr/blog/entrep…
Clever Cloud FR tweet media
Français
1
2
5
1.8K
please-open.it
please-open.it@PleaseOpen_It·
@hanxhx_ @YodaBZH @sebi2706 @clever_cloudFR @keycloak fabuleux 😍 tu utilises CC_KEYCLOAK_BOOTSTRAP_ADMIN_CLIENT_ID et CC_KEYCLOAK_BOOTSTRAP_ADMIN_CLIENT_SECRET pour ton provisioning automatique ? Surtout n'hésites pas à nous faire des retours, on essaye de faire le service qui colle le plus avec les demandes client !
Français
1
0
2
577
please-open.it
please-open.it@PleaseOpen_It·
Another module for Keycloak : user attribute regexp mapper Because in Keycloak user attributes are multivalued (with ability to aggregate them with "user attribute mapper"), we added a regexp filter only to send back attribute if it matches. github.com/please-openit/…
English
0
2
0
158
please-open.it
please-open.it@PleaseOpen_It·
An authenticator to match rfc8252 8.12 ! "native apps MUST NOT use embedded user-agents to perform authorization requests and allows that authorization endpoints MAY take steps to detect and block authorization requests in embedded user-agents" blog.please-open.it/posts/user-age…
English
0
1
1
133
please-open.it retweetledi
please-open.it
please-open.it@PleaseOpen_It·
@Romain_LLC @davlgd Hi @Romain_LLC - Keycloak remain the SPOF of all the infra. No auth, no apps... - We know "heavy" loads that needs more than 2 instances... more than 3, and more than 4 😃 - LDAP are not mandatory
English
0
0
2
51
Roman
Roman@Romain_LLC·
@davlgd I understand so (i have a duplicate VM ready in case of issue). As far as the LDAP directories are OK i'm not too nervous, setting up a new Keycloak SSO should be fast, setting up whole LDAP directories less easy 😅
English
1
0
1
85