Keycloak SSO

Corrupted - OIDC/SAML federation

Category

INFRASTRUCTURE

Status

REBUILD NEXT

Premise

Centralized SSO for all web applications

Goals

  • SAML integration with ISE guest portal

  • OIDC for internal applications

  • FreeIPA as identity backend

Current State

Corrupted - needs rebuild from scratch

Next Steps

  • Deploy fresh instance on k3s

  • Configure FreeIPA LDAP backend

  • Test ISE SAML integration

Architecture Notes

Auth flow: User → Keycloak → FreeIPA → LDAP