{"repo":"italia/spid-keycloak-provider","free":true,"listed":false,"github":"https://github.com/italia/spid-keycloak-provider","clone":"git clone https://github.com/italia/spid-keycloak-provider.git","description":"Italian SPID authentication provider for Keycloak (https://www.keycloak.org/)","language":"Java","stars":86,"topics":["keycloak","sso","spid"],"license":"Apache-2.0","category":"auth-billing-email","readme_excerpt":"spid-keycloak-provider Italian SPID authentication provider for Keycloak (https://www.keycloak.org/) Project details This custom authentication provider for Keycloak enables easy integration of SPID with existing applications by leveraging Keycloak identity brokering features. Keycloak is a nice product, but still lacking on some aspects of SAML2 compatibility, and the SPID specifications deviate from the SAML2 standard in some key aspects. Besides the SPID-SAML2 protocol differences, some of the SP behaviors are hardcoded to work with simple IdPs only (i.e. there is no support for generating SP metadata that joins multiple SPs) . Keycloak is slowly improving on this aspect, so over time this plugin will become simpler and targeted on implementing only the specific changes required by SPID. I have documented a reference configuration for SPID and the workarounds required in the project wiki (https://github.com/italia/spid-keycloak-provider/wiki). Please make sure to read it and understand the config steps and the open issues and limitations before planning your Production environment. Generating a self-signed RSA X509 certificate compliant with SPID specifications Public administrations in Italy are allowed to use self-signed certificates for SPID/SAML signatures. This plugin implements an alternative to the keycloak's rsa-generated provider, which generates a self-signed RSA X509 certificate compliant with SPID specifications. You can select this provider by going to the Key","default_branch":null,"files":null,"tree":[],"storefront":"/r/italia","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/italia/spid-keycloak-provider/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}