No description
Find a file
Bruno Oliveira da Silva f06ba05405
The CodeQL analysis is broken due to the large content of the SARIF file (#10606)
The issue was originally caused by high number of flows paths per alert
generated by the LDAP federation module. That was identified taking the
SARIF file generated and running:

```
jq '.runs[0].results | map({query_id: .rule.id, numPaths: .codeFlows |
length})' java.sarif

```

Together we reduced the number of flows paths, adding optimizations to
skip some paths and avoid false alerts.

Co-authored-by: Bruno Oliveira da Silva <bruno@abstractj.com>

Closes #10203

Co-authored-by: Joshua Mulliken <joshua@mulliken.net>
2022-03-11 13:55:17 +01:00
.github The CodeQL analysis is broken due to the large content of the SARIF file (#10606) 2022-03-11 13:55:17 +01:00
adapters Remove Tomcat 7 adapter 2022-02-28 07:50:36 +01:00
authz Change String client.id to ClientModel client in ResourceServerStore 2022-02-24 12:46:26 +01:00
boms Remove Tomcat 7 adapter 2022-02-28 07:50:36 +01:00
common Make WebAuthn feature default for the product version 2022-03-10 19:00:54 +01:00
core Support for the Recovery codes (#8730) 2022-03-10 15:49:25 +01:00
dependencies LDAP Map storage support to support read/write for roles 2022-03-08 12:03:10 +01:00
distribution Remove Tomcat 7 adapter 2022-02-28 07:50:36 +01:00
docs Support for console-JSON and FILE logging 2022-03-08 08:19:03 -03:00
examples Remove additional repositories where they are not needed. Set updatePolicy for GA. (#10047) 2022-02-16 08:59:05 +01:00
federation Set version to 18.0.0-SNAPSHOT (#10165) 2022-02-11 21:28:06 +01:00
integration Keycloak 10489 support for client secret rotation (#10603) 2022-03-09 00:05:14 +01:00
misc Remove Tomcat 7 adapter 2022-02-28 07:50:36 +01:00
model Change authentication sessions map to set (#10596) 2022-03-10 08:45:24 +01:00
operator Mismatch between RESTEasy dependency on Operator and Quarkus distribution Closes #10702 (#10703) 2022-03-11 09:24:54 +01:00
quarkus Update to Quarkus 2.7.4 (#10687) 2022-03-11 09:25:34 +01:00
saml-core Set version to 18.0.0-SNAPSHOT (#10165) 2022-02-11 21:28:06 +01:00
saml-core-api Set version to 18.0.0-SNAPSHOT (#10165) 2022-02-11 21:28:06 +01:00
server-spi Support for the Recovery codes (#8730) 2022-03-10 15:49:25 +01:00
server-spi-private Protocol mapper and client scope for 'acr' claim 2022-03-11 09:23:25 +01:00
services Protocol mapper and client scope for 'acr' claim 2022-03-11 09:23:25 +01:00
testsuite Protocol mapper and client scope for 'acr' claim 2022-03-11 09:23:25 +01:00
themes Support for the Recovery codes (#8730) 2022-03-10 15:49:25 +01:00
util Set version to 18.0.0-SNAPSHOT (#10165) 2022-02-11 21:28:06 +01:00
wildfly Set version to 18.0.0-SNAPSHOT (#10165) 2022-02-11 21:28:06 +01:00
.gitattributes
.gitignore Remove Node modules from source control (#9963) 2022-03-02 08:49:17 +01:00
.gitleaks.toml KEYCLOAK-19155: Add a .gitleaks.toml 2021-08-31 20:21:28 +02:00
ADOPTERS.md
CONTRIBUTING.md Update commit message and issue linking sections in contributors guide (#9391) 2022-01-11 11:19:31 +01:00
get-version.sh
GOVERNANCE.md
LICENSE.txt
MAINTAINERS.md
maven-settings.xml
pom.xml Update to Quarkus 2.7.4 (#10687) 2022-03-11 09:25:34 +01:00
prod-arguments.json
README.md Updates readme to new Quarkus container images (#10706) 2022-03-11 11:09:24 +01:00
release.sh Add profile to include new admin console (#9283) 2021-12-22 08:27:33 +01:00
set-version.sh Update default distribution to Quarkus (#9839) 2022-02-01 09:42:09 +01:00

Keycloak

Keycloak is an Open Source Identity and Access Management solution for modern Applications and Services.

This repository contains the source code for the Keycloak Server, Java adapters and the JavaScript adapter.

Help and Documentation

Reporting Security Vulnerabilities

If you've found a security vulnerability, please look at the instructions on how to properly report it

Reporting an issue

If you believe you have discovered a defect in Keycloak please open an issue. Please remember to provide a good summary, description as well as steps to reproduce the issue.

Getting started

To run Keycloak download the distribution from our website. Unzip and run:

bin/standalone.[sh|bat] 

Alternatively, you can use the Docker image by running:

docker run quay.io/keycloak/keycloak start-dev

For more details refer to the Keycloak Documentation.

Building from Source

To build from source refer to the building and working with the code base guide.

Testing

To run tests refer to the running tests guide.

Writing Tests

To write tests refer to the writing tests guide.

Contributing

Before contributing to Keycloak please read our contributing guidelines.

Other Keycloak Projects

License