No description
Find a file
Tero Saarni 62fd969fe1
Allow requests from local IPv6 addresses
If administrator selects EXTERNAL for Require SSL setting, allow clear-text
HTTP requests when client is coming from IPv6 link-local or unique local
address (ULA).

Previously only private IPv4 addresses were allowed and private IPv6 addresses
were rejected.

Closes #30678

Signed-off-by: Tero Saarni <tero.saarni@est.tech>
2024-08-05 16:38:55 +02:00
.github All CURL commands should check the HTTP response code (#31602) 2024-07-26 12:38:06 +02:00
.idea
.mvn Upgrade Maven and wrapper to latest version 2024-06-19 10:42:33 +02:00
adapters Remove keycloak-undertow-adapter-spi 2024-07-23 13:53:07 +02:00
authz Make createPatSupplier private to public 2024-07-23 11:11:42 +00:00
boms Add suffix to keycloak-authz-client artifact in keycloak repository 2024-07-17 14:59:09 +02:00
common Allow requests from local IPv6 addresses 2024-08-05 16:38:55 +02:00
core Implement advanced verification of SD-JWT in Keycloak (#30966) 2024-08-05 11:50:03 +02:00
crypto Implement advanced verification of SD-JWT in Keycloak (#30966) 2024-08-05 11:50:03 +02:00
dependencies
distribution All CURL commands should check the HTTP response code (#31602) 2024-07-26 12:38:06 +02:00
docs Allow requests from local IPv6 addresses 2024-08-05 16:38:55 +02:00
federation Fix test LDAP connection with multiple ldap connection urls 2024-07-16 08:57:50 +02:00
integration Allow members joining multiple organizations 2024-07-29 09:02:36 +02:00
js Change {0} to {{name}} to comply with other languages and display correct variable (#31898) 2024-08-05 13:47:13 +00:00
misc Testsuite PoC - Implement a ChromeWebDriverSupplier (#30377) (#31026) 2024-07-08 14:01:34 +02:00
model Enable ProtoStream encoding for External Infinispan feature 2024-08-01 16:16:19 +02:00
operator enhance: add bootstrap admin handling to the operator (#31646) 2024-07-29 14:08:31 +02:00
quarkus Enable ProtoStream encoding for External Infinispan feature 2024-08-01 16:16:19 +02:00
rest Make sure users created through a registration link are managed members 2024-07-25 04:30:13 -03:00
saml-core Use a default Java version from root POM (#29927) 2024-06-21 14:19:31 +02:00
saml-core-api Use a default Java version from root POM (#29927) 2024-06-21 14:19:31 +02:00
server-spi Don't fail on null config map in AdvancedClaimToGroupMapper/AdvancedClaimToRoleMapper/AdvancedAttributeToGroupMapper/AdvancedAttributeToGroupMapper 2024-08-05 10:22:22 +02:00
server-spi-private Caches the id-to-user mapping for the evaluation in the current session (#31794) 2024-08-01 10:38:46 +02:00
services Fix access token issue OID4VC (#31763) 2024-08-04 11:42:40 +02:00
test-poc Testsuite PoC - Prototype OAuth client (#31663) 2024-07-26 15:01:36 +02:00
testsuite Don't fail on null config map in AdvancedClaimToGroupMapper/AdvancedClaimToRoleMapper/AdvancedAttributeToGroupMapper/AdvancedAttributeToGroupMapper 2024-08-05 10:22:22 +02:00
themes Bump rollup from 4.19.0 to 4.19.1 (#31692) 2024-07-29 13:10:29 +02:00
util
.editorconfig
.gitattributes
.gitignore Add support to select supplier for a given type (#31292) 2024-07-16 10:22:00 +02:00
.gitleaks.toml
ADOPTERS.md
CONTRIBUTING.md
eslint.config.js
get-version.sh
GOVERNANCE.md
LICENSE.txt
MAINTAINERS.md
maven-settings.xml
mvnw Upgrade Maven and wrapper to latest version 2024-06-19 10:42:33 +02:00
mvnw.cmd Upgrade Maven and wrapper to latest version 2024-06-19 10:42:33 +02:00
package.json Bump @types/node from 22.0.0 to 22.0.2 (#31822) 2024-08-01 11:58:50 +02:00
pnpm-lock.yaml Bump cypress from 13.13.1 to 13.13.2 (#31820) 2024-08-01 12:00:07 +02:00
pnpm-workspace.yaml
pom.xml Clear local caches on split-brain heal 2024-07-31 13:59:06 +02:00
PR-CHECKLIST.md
README.md
SECURITY-INSIGHTS.yml
set-version.sh
tsconfig.eslint.json
tsconfig.json

Keycloak

GitHub Release OpenSSF Best Practices GitHub Repo stars GitHub commit activity

Open Source Identity and Access Management

Add authentication to applications and secure services with minimum effort. No need to deal with storing users or authenticating users.

Keycloak provides user federation, strong authentication, user management, fine-grained authorization, and more.

Help and Documentation

Reporting Security Vulnerabilities

If you have found a security vulnerability, please look at the instructions on how to properly report it.

Reporting an issue

If you believe you have discovered a defect in Keycloak, please open an issue. Please remember to provide a good summary, description as well as steps to reproduce the issue.

Getting started

To run Keycloak, download the distribution from our website. Unzip and run:

bin/kc.[sh|bat] start-dev

Alternatively, you can use the Docker image by running:

docker run quay.io/keycloak/keycloak start-dev

For more details refer to the Keycloak Documentation.

Building from Source

To build from source, refer to the building and working with the code base guide.

Testing

To run tests, refer to the running tests guide.

Writing Tests

To write tests, refer to the writing tests guide.

Contributing

Before contributing to Keycloak, please read our contributing guidelines. Participation in the Keycloak project is governed by the CNCF Code of Conduct.

Other Keycloak Projects

License