ADFS v.2 to Keycloak migration guide Keycloak has been proposed as an alternative to ADFS. Keycloak is an open-source identity management solution that supports authentication based on SAML and OIDC protocol, it has no out of the box support for the WS-* security standards (e.g. WS_Federation WS_Trust). You can read more about Keycloak at https://www.keycloak.org/. At the NIHDI most, if not all, business web applications based on .NET 4.x are implemented as web-based applications. Some web applications are only for internal use, others are also available for an external audience. Internal web applications all require that users are authenticated, the users are known in the riziv.org active directory domain and when they access a business web application from NIHDI computers connected to the internal network (either direct or via VPN) they are already authenticated. External web applications require in most cases that the user is authenticated, but some external applications are also available anonymously. Authentication for external users is delegated to identity providers such as eHealth and KSZ-BCSS.
Comments are closed.
|
|