Secure, confident identities – successfully implemented across all industries
Whether in industry or education, the demand for secure and flexible identity solutions is constantly growing.
More and more companies and public institutions are relying on Keycloak as a Service (PaaS) from Intension to operate their identity infrastructure efficiently, scalably and in compliance with data protection regulations.
Two real-world examples demonstrate how versatile and powerful Keycloak can be – from industrial single sign-on solutions to anonymous student logins for millions of users.
Kärcher: Simplified identity management for a global corporation
Intension – Flexibility with regard to functionality and infrastructure requirements.
— Anna Füssinger and Ronny Buchmann, Kärcher
Challenge
Continuing to operate the existing SSO solution would only have been possible at significantly higher costs. The goal was therefore to introduce a new, company-wide SSO platform that supports modern standards and can be operated cost-effectively in the long term.
Our solution
With Keycloak as its new SSO platform, Kärcher was able to significantly reduce licence costs while improving the integration of modern cloud applications.
The integrated IAM components also enabled the implementation of registration and approval processes for external employees, based entirely on Keycloak.
Results and added value
- Introduction of Keycloak as a group-wide SSO system
- Setting up an IAM system for external parties and partners
- Transparent migration of all applications from the existing SSO solution
- Fail-safe setup on the AWS Kubernetes infrastructure
- Integration of the existing Microsoft Active Directory
- Adaptation to Kärcher’s corporate design (CI/CD)
Conclusion:
A powerful, highly available and future-proof SSO system – with Keycloak at its core.
FWU: Secure and anonymous logins for 12 million users in the education sector
‘Flexible use of Keycloak according to our needs.’
— Michel Smidt, FWU Institute for Film and Image
Challenge
The FWU Institute’s goal was to give all pupils, teachers and authorised persons in Germany access to digital educational offerings using their own school accounts – anonymously, securely and scalably.
The solution had to be capable of reliably supporting over 12 million users in its expanded stage.
Our solution
Keycloak was used as a manufacturer-independent open source platform, operated and managed by Intension.
By operating in a Kubernetes cluster at Exoscale and using Infrastructure as Code (Terraform), a highly available, scalable and secure platform could be provided.
Results and added value
- Highly available Keycloak setup in the cloud cluster
- Use of Keycloak as a broker between educational offerings and state portals
- Development of a Keycloak extension for the irreversible pseudonymisation of user data
- Implementation of strict data minimisation and access restrictions
- Development of a microservice for managing connected portals via REST API
💡 Conclusion:
A secure, scalable and GDPR-compliant login system for millions of students – with maximum privacy and minimal administrative effort.
☁️ Why choose Keycloak PaaS from Intension?
Both projects – from completely different industries – benefit from the same basis:
Keycloak as a Service – open source, but worry-free.
✔️ Stability & Performance: Highly available clusters in European data centres
✔️ Compliance & Data Protection: Fully GDPR and NIS2 compliant
✔️ Efficiency: No licence model, transparent usage prices
✔️ Freedom: 100% open source, no vendor lock-in
✔️ Convenience: Automatic updates, monitoring and backup
🔑 Conclusion:
Whether in an industrial environment or in the education sector, Keycloak PaaS from Intension enables secure, flexible and sustainable identity solutions that can be adapted to individual requirements.
With Intension as a partner, companies and institutions retain full control over their identities – without having to worry about operation, maintenance or availability.



