Keycloak in production: How to securely achieve your identity management goals

Since Keycloak appeared on our radar in 2016, it has developed into the leading open source solution for identity and access management. However, its implementation poses challenges. We share our many years of expertise and show you how we support companies in setting up Keycloak securely, scalably and ready for production.

Reading time: 2 minutes

Why Keycloak? And why is the right configuration crucial?

Keycloak is a powerful tool that offers features such as single sign-on (SSO), identity brokering and centralised user management. However, in order to put Keycloak into production – especially in high-availability environments – it must be configured correctly.

This is where we come in. Since 2019, we have been actively supporting companies with implementation and consulting to make Keycloak fit for continuous operation.

Our range of services: From concept to production environment

We help you seamlessly integrate Keycloak into your existing IT infrastructure and make it future-proof for you:

1. Full integrations

  • Application connection: Secure and standard-compliant integration of your applications (OIDC/OAuth 2.0/SAML).
  • User Stores: Connection to existing user directories (e.g. LDAP, Active Directory, databases).
  • Identity provider: Connection of external IdPs for login options (e.g. social logins or partner logins).

2. Customised extensions

If the standard is not sufficient, we develop Keycloak Service Provider Interfaces (SPIs).to map individual business logic or meet specific requirements. This also includes customising the Look and feel for a consistent user experience.

3. Flexible infrastructure setups

Whether on virtual machines or in modern container environments, we will find the optimal setup for you:

  • Setups on virtual servers.
  • Reliable setups with Docker or Podman.
  • Highly available cluster implementations on Kubernetes.

4. Automation and DevOps

Production readiness also means change management. We support you in Automation of both the infrastructure (infrastructure as code) and the Keycloak configuration. This enables you to make changes quickly, reliably and automatically in the Deploy staging procedures.

Zwei Erfolgsgeschichten aus der Praxis

Trust is built on success. Here are two examples of how we helped our customers achieve their Keycloak goals:

Alfred Kärcher SE & Co. KG: Successful cloud migration

For one of our first customers, Alfred Kärcher SE & Co. KG, we brought Keycloak to the cloud. The project involved consolidating all applications onto the new Keycloak platform, which went live on a specific date. Today, we support Kärcher’s operations teams as 3rd level support is available and provides assistance with all important Keycloak upgrades.

Fleet management in the cloud: High availability on Azure

We supported a European provider of a cloud-based fleet management solution in setting up a highly available Keycloak infrastructure on Azure. set up. The entire setup – from the infrastructure and application to the Keycloak configuration – was fully automated. Through close cooperation and training, we were also able to achieve sustainable Build up expertise for your own business.

Experience in product safety

The complexity of modern identity solutions requires specialised knowledge. Our expertise in Keycloak and infrastructure automation ensures that your implementation not only works, but secure, scalable and maintainable.

 

Ready for the next step?

Are you facing the challenge of introducing Keycloak, migrating or performing a complex upgrade? Sometimes an outside perspective can help you set up the architecture correctly from the outset.

We are happy to share our knowledge: Let us discuss, without obligation, how our Keycloak consulting services can accelerate your project.

Weitere interessante Beiträge

Technical implementation by internet agency aceArt.