Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content

Keycloak

8 Topics 104 Posts
  • Keycloak - Package Updates

    Pinned Locked
    40
    0 Votes
    40 Posts
    8k Views
    Package UpdatesP
    [1.6.1] Update keycloak to 26.6.1 Full Changelog #47276 CVE-2026-4366 Blind Server-Side Request Forgery (SSRF) via HTTP Redirect Handling core #47619 CVE-2026-4633 Keycloak user enumeration via identity-first login core #47839 Update CloudNativePG to 1.29 #47909 Database data at rest encryption #47776 False session type of access token in offline_access refresh token flow with scope parameter without offline_access scope oidc #47872 v26.6.0 Operator flood logs with warnings operator #47904 @keycloak/keycloak-admin-client fails to install in version 26.6.0 admin/client-js #47908 MigrateTo26_6_0 modifies custom browser flows, breaking existing realm authentication organizations #47955 IdentityProviderAuthenticator creates an infinite redirect loop when an IdP returns an error (e.g. access_denied) and the login was initiated with kc_idp_hint identity-brokering #47929 User profile multiselect options not highlighted as selected in dropdown admin/ui
  • PSA: Keycloak easy custom themes (working editor!)

    1
    2 Votes
    1 Posts
    16 Views
    No one has replied
  • Apps Compatible with Keycloak SSO

    6
    1 Votes
    6 Posts
    950 Views
    jdaviescoatesJ
    @Neiluj said in Apps Compatible with Keycloak SSO: Hi - You can find the list of Cloudron packaged app that are SSO enabled here: https://www.cloudron.io/appstatus.html While this list speaks to a SSO managed by / for Cloudron, I am under the understanding that, for each of these apps, if you leave user management to the app when installting the app on Cloudron, you should be able to configured SSO to work with your Keycloak instance. Hopefully this is a correct assumption. I hope that this helps. Yeah, I'm not certain either, but think you're right that any app that already supports Cloudron SSO could be configured to work with Keycloak SSO too. I think perhaps @Sam_uk is using Keycloak (or similar) for the SSO for his Cloudrons and so could probably chime in with actual knowledge gained from experience.
  • Config resets after restart

    Solved
    3
    0 Votes
    3 Posts
    581 Views
    S
    @girish thank you so much! I completely missed the option to configure trusted ips, my bad. Adding the required ip's to the list solved the issue for me
  • realm email configuration

    4
    1
    1 Votes
    4 Posts
    1k Views
    aurelien-cA
    For the record, the advice was fruitful and I have a working configuration.
  • how to connect to a cloudron ldap via federation?

    12
    3
    2 Votes
    12 Posts
    3k Views
    C
    To circle back on this... I deployed Keycloak from the app store. I created a new (local) admin user and deleted the temp one (as per the instructions out of the box). I then used the "Login with Cloudron" button and was able to login to Keycloak (as the non admin user from Cloudron directory) and my Cloudron user shows up in Keycloak . I would be very interested in developing/documenting a tight integration/best practices between Cloudron/Keycloak as a way to greatly extend/enhance Cloudron user management. Setting up various tenants, self service enabling signups in those tenants etc. For example, building user on-boarding / approval workflows (where you bring on a new team member and they need to be provisioned into groups). Right now, only Cloudron Superadmins have the ability to manage groups, and that isn't a privilege I want to hand out I originally planned to have Claude build me a web app and utilize the Cloudron API to build that functionality (and was going to AGPLv3 it). However, perhaps, with Keycloak we don't have to fully re-invent the wheel? IAM is a VERY important requirement/feature to compete with AWS/Azure. It's the next thing my board wants to see as we move through go-live with Cloudron across our various projects/entities. Who would be the key people I would need to work with to get this built out/tested/integrated/streamlined? I realize that Cloudron (as I understand it) isn't currently positioned/targeting "enterprise" or those who may use AWS/Azure. I am happy todo the light/medium/(some) heavy lift work to help get it to where I need it to be. I am a founder/CTO of a company that is in the ramp up/growth phase. I steadfastly refuse to use the "big cloud" and Cloudron has been amazing at eliminating about 90% of system admin duties in a reliable way.
  • Enabling features

    26
    0 Votes
    26 Posts
    5k Views
    girishG
    @gpichler @msbt I have merged it now and published it
  • How to add a permanent admin?

    12
    0 Votes
    12 Posts
    6k Views
    S
    @joseph btw, i ended up uninstalling and reinstalling the Keycloak app and this the process went about as depicted in your video.