Successful Identity Projects with Keycloak

 

Learn how companies are modernizing their identity and access management landscape — from integrating existing systems to building a scalable, highly available platform.

🔐 Centralized Authentication for Internal and External Users

⚡ Scalable and highly available architecture

🔄 Integration of Existing Applications and Directory Services

🧩 Customized Solutions for a Variety of Needs

Experience from over 100 Keycloak projects

50+

Managed SaaS Keycloak Instances

5.000+

Secure Applications & Services

2.000.000+

Users

30.000.000+

Daily Authentications

Applications of Our Platform

IAM for Energy Providers & Municipal Utilities

Secure digital identities for customer portals, employee systems, and critical infrastructure.

Healthcare

GDPR-compliant management of patients, employees, and external systems, meeting the highest standards for data protection and security

Industry

Integration of complex system environments and secure management of partners and users.

Public Transportation & Mobility

Scalable authentication for digital services and applications in a mobile environment.

Energie

Initial Situation

Fragmented IAM Landscape

Many energy providers operate with legacy IT infrastructures in which different authentication systems coexist.


This leads to:



  • lack of centralized access control

  • significant administrative burden

  • limited integration of new applications

  • the complex administration of external users, such as service providers or partners


Target setting

Centralized and Scalable Identity Platform


The goal was to create a unified IAM solution that:



  • connects all applications via a central single sign-on system

  • manages internal and external users in a structured manner

  • can be integrated into existing systems

  • can be operated in a scalable and stable manner over the long term


Implementation

Implementation of Keycloak as a Central IAM Platform


Keycloak was implemented as the central identity and access management platform.


The following were included:



  • implemented modern authentication and SSO mechanisms

  • integrated with existing user structures

  • standard-based interfaces are used to integrate systems flexibly


including authentication, user migration and system integration


Migration & Integration

Seamless integration with existing systems


Existing systems and users were gradually migrated to the new platform.


The following were included:



  • Users, including passwords, have been migrated

  • integrated with existing applications

  • Directory services integrated

  • Logging and monitoring structures established


including migration, integration, and log forwarding


Operations & Results

A Secure and Future-Proof Platform


The platform is operated as a scalable Keycloak-as-a-Service solution.


The result for the customer:



  • zentralized and secure authentication

  • reduced complexity in user management

  • easy integration of new applications

  • stable operation through structured update and release processes


includes staging, updates, and operation of the environment


Healthcare

Initial Situation

Strict Data Protection and Security Requirements


Healthcare organizations handle particularly sensitive data and are subject to strict regulatory requirements.


Typical challenges include:



  • Processing of Personal and Medical Data

  • strict requirements for data protection and access controls

  • Integration of Various Systems and Applications

  • secure integration of external users such as patients, doctors, or partners


Target setting

Secure and GDPR-compliant identity platform


The goal was to create a centralized IAM solution that:



  • Compliance with Data Protection and Regulatory Requirements

  • enables secure and controlled authentication

  • clearly separates and manages internal and external users

  • offers a user-friendly login process and self-service features


Implementation

Implementation of Keycloak as a Centralized IAM Solution


Keycloak was implemented as the central platform for identity and access management.


The following were included:



  • integrates modern authentication mechanisms

  • implemented secure login and self-service processes

  • flexible interfaces used to connect to existing systems


including user management, self-service, and authentication processes


Integration & User Management

Secure Management of Sensitive Data


The solution was seamlessly integrated into existing systems and adapted to meet the requirements of the healthcare sector.


The following were included:



  • User management for different roles has been implemented (e.g., patients, employees)

  • Processes for user registration and management have been established

  • existing applications securely integrated


including integration, user management, and access control


Result

A Data Protection-Compliant and User-Friendly IAM Architecture


With the launch of the platform, healthcare organizations were able to:



  • manage sensitive data securely and in a controlled manner

  • reliably meet regulatory requirements

  • centrally control access to applications

  • provide a user-friendly and secure login experience


The resulting solution is secure, scalable, and optimally tailored to the needs of the healthcare sector.


Industry

Initial Situation
A complex and evolving system landscape


Industrial companies often work with a wide variety of systems, applications, and user structures that have evolved over time.


Typical challenges include:



  • different login systems for different applications

  • lack of centralized control over access rights

  • complex integration of partners, suppliers, and service providers

  • high costs for operating and maintaining the existing IAM structures


Target setting
Consistent and Scalable Identity Management


The goal was to create a centralized IAM platform that:



  • connects all applications via single sign-on

  • internal and external users are managed uniformly

  • can be flexibly integrated into existing system environments

  • provides a scalable foundation for future requirements


Implementation
Setting Up a Centralized Keycloak Platform


Keycloak was implemented as the central IAM and SSO platform.


The following were included:



  • integrated modern authentication processes and single sign-on

  • Integrated with existing systems and user structures

  • custom requirements are implemented through extensions and customizations


including integration, customization, and enhancements


Infrastructure & Automation

Scalable Operations on Kubernetes


The platform was built as a cloud-native infrastructure and is operated automatically.


The following were included:



  • Keycloak running on Kubernetes clusters

  • Automated infrastructure and configuration (e.g., IaC)

  • Standardized deployment and operational processes


Includes Kubernetes setup and automated infrastructure


Result

Efficient and Future-Proof IAM Architecture


With the introduction of the centralized platform, industrial companies were able to:



  • significantly simplify your IT environment

  • integrate new applications more quickly

  • effectively integrate external partners

  • reduce operating expenses through automation


The resulting architecture is scalable, flexibly expandable, and provides a stable foundation for further digitalization.


Public Transportation & Mobility

Initial Situation

High User Numbers and Distributed Systems


Mobility and transportation companies use a wide variety of digital applications that are accessed simultaneously by different user groups.


Typical challenges include:



  • high user numbers, especially in mobile applications

  • different systems for customers, internal employees, and partners

  • lack of centralized control over authentication and access

  • increasing demands on availability and performance


Target setting

Scalable and Consistent Authentication


The goal was to create a centralized IAM solution that:



  • enables consistent authentication across all applications

  • reliably processes large numbers of users

  • securely separates and manages internal and external users

  • can be flexibly integrated into existing systems


Implementation

Implementation of a Centralized Keycloak Platform


Keycloak was implemented as the central platform for identity and access management.


The following were included:



  • Single Sign-On Implemented for Various Applications

  • integrated modern authentication processes

  • Interfaces used to integrate existing systems


based on standards-based IAM integration and scalable architecture


Scaling & Integration

Operations optimized for large numbers of users


The platform was specifically designed to handle high loads and dynamic requirements.


The following were included:



  • provided a scalable infrastructure to handle peak loads

  • mobile and web-based applications integrated

  • external users (e.g., end customers) integrated

  • Systems designed to be flexibly expandable


Result

A stable and scalable platform for digital services


With the introduction of the centralized IAM platform, mobility companies were able to:



  • reliably serve a large number of users

  • provide digital services centrally and securely

  • integrate new applications more quickly

  • lay a solid foundation for future mobility solutions


The resulting solution offers high availability, is scalable, and is optimally designed to meet the requirements of the mobility sector.


Customers who trust us

"Thanks to intension's service, we were able to concentrate fully on our own products"

Christian Mähler evoach GmbH

"flexible use of Keycloak according to our needs".

Michel Smidt FWU Institut für Film und Bild in Wissenschaft und Unterricht gemeinnützige GmbH

"intension - a flexible and trustworthy partner".

Kristian Kralj AEB SE

“High standards, maximum flexibility: intension made it possible for us to use Keycloak exactly the way we want.”

Gernot Lepuschitz Goldright GmbH

"In Intension, we have found a trustworthy and competent partner"

Alex Mairginter ELAS GZFR GmbH

"intension - flexibility with regard to requirements for functionality and infrastructure".

Anna Füssinger & Ronny Buchmann Alfred Kärcher SE & Co. KG

„One strengths of intension is the high flexibility of the product"

Markus Paulmann Deutsche Telekom IT GmbH

This is how our customer ELAS experiences working with intension

Technical implementation by internet agency aceArt.