Gestion d'identité et SSO
Find a file
Steven Hawkins 29d00b07f3
fix: use to values ahead of keycloak defaults (#46871)
* fix: use `to` values ahead of keycloak defaults

closes: #46728

Signed-off-by: Steve Hawkins <shawkins@redhat.com>

* Update docs/documentation/upgrading/topics/changes/changes-26_6_0.adoc

Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
Signed-off-by: Steven Hawkins <shawkins@redhat.com>

* Apply suggestion from @shawkins

Signed-off-by: Steven Hawkins <shawkins@redhat.com>

---------

Signed-off-by: Steve Hawkins <shawkins@redhat.com>
Signed-off-by: Steven Hawkins <shawkins@redhat.com>
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
2026-03-20 14:42:49 +01:00
.github Add check for missing test packages in base testsuite and add missing packages 2026-03-18 15:02:54 +00:00
.idea Add Intellij project icon 2023-09-18 12:39:16 +02:00
.mvn Update custom Maven build cache configuration for js directory 2024-12-10 10:07:02 +00:00
adapters Ensure that an encrypted assertion is signed if response is not signed (#355) (#46929) 2026-03-09 10:25:27 +01:00
authz Stricter access control for managing permission tickets 2026-03-08 12:45:34 +01:00
boms Add Spotless plugin with removeUnusedImports check enabled 2025-10-13 13:32:01 +02:00
common fix: allowing nested } if matched with { (#47290) 2026-03-20 11:53:53 +01:00
core Separate password and OTP brute force protection to prevent OTP bypass attacks by default 2026-03-17 18:57:37 +01:00
crypto Fix nesting of argon2 semaphore acquisition and release 2026-01-20 11:16:30 +01:00
dependencies Add missing artifact descriptions to allow Maven Central Portal Publisher pass validation process. (#40822) 2025-08-12 16:50:17 +02:00
distribution Make shebang in bash scripts consistent (#37369) 2026-02-17 11:32:28 +01:00
docs fix: use to values ahead of keycloak defaults (#46871) 2026-03-20 14:42:49 +01:00
federation Brief user representation should not return attributes 2026-03-12 14:07:41 +01:00
integration Search for organization group membership ignores search param 2026-03-11 10:26:27 -03:00
js fix(admin-v2): add description to OpenAPI schema properties (#47302) 2026-03-20 13:34:03 +00:00
misc Migrations in db-compatibility-verifier-maven-plugin 2026-02-18 20:57:47 +01:00
model Add ISPN config file checksum to compatibility metadata (#47273) 2026-03-20 12:09:34 +01:00
operator Use quay.io instead of DockerHub in testsuite createCurlContainer() 2026-03-11 08:12:53 +00:00
quarkus fix: use to values ahead of keycloak defaults (#46871) 2026-03-20 14:42:49 +01:00
rest fix(admin-v2): add description to OpenAPI schema properties (#47302) 2026-03-20 13:34:03 +00:00
saml-core Ensure that an encrypted assertion is signed if response is not signed (#355) (#46929) 2026-03-09 10:25:27 +01:00
saml-core-api Use MIME decoder instead of the default one to replace deprecated Base64 class 2026-01-09 16:38:09 +01:00
scim Enforce realm admin roles and permission when managing resources 2026-03-17 20:30:25 +01:00
server-spi Enforce realm admin roles and permission when managing resources 2026-03-17 20:30:25 +01:00
server-spi-private [OID4VCI] Small inconsistencies in some events 2026-03-18 18:46:48 +01:00
services Asynchronous server initialization 2026-03-19 21:23:46 +01:00
test-framework Asynchronous server initialization 2026-03-19 21:23:46 +01:00
tests [OID4VCI] Migrate OID4VCJWTIssuerEndpointTest (cleanup) 2026-03-19 16:19:54 +01:00
testsuite [OID4VCI] Small inconsistencies in some events 2026-03-18 18:46:48 +01:00
themes Translations update from Hosted Weblate (#47175) 2026-03-20 01:31:38 +01:00
util Implement forced password change for LDAP federated user (password policy control) (#15253) 2026-02-20 09:15:51 -03:00
.editorconfig Proposed import order (#43432) 2025-11-14 09:34:49 +01:00
.gitattributes enforce LF line endings on *.tsx files (#45997) 2026-02-18 10:28:55 +00:00
.gitignore [OID4VCI] Credential Offer must be created by Issuer not Holder (#44255) 2025-11-27 16:07:10 +01:00
.gitleaks.toml Updated .gitleaks.toml to ignore false positive in RedirectUtilsTest (#33346) 2024-09-27 14:32:36 +02:00
ADOPTERS.md Add Xata to ADOPTERS.md (#40802) 2025-06-30 19:32:32 +02:00
CONTRIBUTING.md Update contributors guidelines (#46904) 2026-03-09 09:03:31 +01:00
get-version.sh Make shebang in bash scripts consistent (#37369) 2026-02-17 11:32:28 +01:00
GOVERNANCE.md Update governance model around changes in maintainership (#29292) 2024-05-22 08:24:10 +02:00
LICENSE.txt Added text version of ASL2 license 2019-11-08 12:43:10 +01:00
MAINTAINERS.md Add Steven Hawkins as a maintainer (#45144) 2026-01-05 16:32:14 +01:00
maven-settings.xml [KEYCLOAK-11764] Upgrade to Wildfly 19 2020-04-24 08:19:43 -03:00
mvnw Upgrade Maven and wrapper to latest version 2024-06-19 10:42:33 +02:00
mvnw.cmd Upgrade Maven and wrapper to latest version 2024-06-19 10:42:33 +02:00
pom.xml Upgrade to Quarkus 3.33.0.CR1 (#47131) 2026-03-13 10:55:16 +01:00
PR-CHECKLIST.md Introduce CODEOWNERS (#16637) 2023-01-30 13:05:45 +01:00
README.md Add CLOMonitor Badge to the README 2025-02-20 12:31:58 -03:00
SECURITY-INSIGHTS.yml Provide an OpenSSF security insights manifest file 2024-02-15 11:02:33 -03:00
set-version.sh Make shebang in bash scripts consistent (#37369) 2026-02-17 11:32:28 +01:00

Keycloak

GitHub Release OpenSSF Best Practices CLOMonitor OpenSSF Scorecard Artifact Hub GitHub Repo stars GitHub commit activity Translation status

Open Source Identity and Access Management

Add authentication to applications and secure services with minimum effort. No need to deal with storing users or authenticating users.

Keycloak provides user federation, strong authentication, user management, fine-grained authorization, and more.

Help and Documentation

Reporting Security Vulnerabilities

If you have found a security vulnerability, please look at the instructions on how to properly report it.

Reporting an issue

If you believe you have discovered a defect in Keycloak, please open an issue. Please remember to provide a good summary, description as well as steps to reproduce the issue.

Getting started

To run Keycloak, download the distribution from our website. Unzip and run:

bin/kc.[sh|bat] start-dev

Alternatively, you can use the Docker image by running:

docker run quay.io/keycloak/keycloak start-dev

For more details refer to the Keycloak Documentation.

Building from Source

To build from source, refer to the building and working with the code base guide.

Testing

To run tests, refer to the running tests guide.

Writing Tests

To write tests, refer to the writing tests guide.

Contributing

Before contributing to Keycloak, please read our contributing guidelines. Participation in the Keycloak project is governed by the CNCF Code of Conduct.

Joining a community meeting is a great way to get involved and help shape the future of Keycloak.

Other Keycloak Projects

License