Blog

Insights on Identity, Security & Keycloak

Tutorials, deep dives, and best practices from the Skycloak team.

security

Keycloak Authorization Services: Policy Types Explained

Keycloak Authorization Services explained: resources, scopes, permissions, and every policy type (role, group, time, regex, JS, aggregate) and when to…

Guilliano Molaire Guilliano Molaire 11 min read
Cross-Region Identity Replication: Global Authentication Architecture
Tutorials

Configuring MFA in Keycloak: Enterprise Patterns

A practical guide to configuring MFA in Keycloak, covering OTP policies, WebAuthn, conditional flows, client-specific overrides, and token-based MFA detection.

Guilliano Molaire Guilliano Molaire 13 min read
Authentication Error Handling: User Experience and Security Balance
Tutorials

Authentication Error Handling in Keycloak: Customizing Error Pages and User Experience

Learn how to customize Keycloak error pages, handle OAuth/OIDC errors in your app, and configure brute force protection for secure,…

Guilliano Molaire Guilliano Molaire 11 min read
Tutorials

8 Default Configurations to Adjust Right Away on Your Keycloak Cluster

Optimize your Keycloak cluster by adjusting these 8 critical default configurations for database, HTTPS, email, sessions, grants, admin security, and…

Guilliano Molaire Guilliano Molaire 14 min read
Top 7 Keycloak Cluster Configuration Best Practices
best-practices

Top 7 Keycloak Cluster Configuration Best Practices

Learn the top 7 Keycloak cluster configuration best practices covering discovery, Infinispan caching, database pooling, sticky sessions, and monitoring.

Guilliano Molaire Guilliano Molaire 12 min read
How to set Entra ID SAML in Keycloak as an IdP
identity-providers

How to Configure Microsoft Entra ID as a SAML Identity Provider in Keycloak

Step-by-step guide to configuring Microsoft Entra ID as a SAML identity provider in Keycloak, with attribute mappers, metadata import, and…

Guilliano Molaire Guilliano Molaire 13 min read
product

Migrating from Self-Hosted Keycloak to Skycloak in Under 30 Minutes

A new wizard takes your Keycloak pg_dump, theme, and extensions and provisions a managed cluster with everything already in place.…

Guilliano Molaire Guilliano Molaire 7 min read
security

Keycloak Auditing & Event Logging: The Complete Guide

A complete guide to Keycloak auditing: login and admin events, event listeners, retention, SIEM forwarding, alerting, and security best practices.

Guilliano Molaire Guilliano Molaire 16 min read
Tutorials

Keycloak Passkeys & WebAuthn: The Complete Guide

Set up passkeys and WebAuthn in Keycloak for passwordless login and two-factor auth: required actions, authentication flows, policies, and browser…

Guilliano Molaire Guilliano Molaire 13 min read

Stay ahead on identity & security

Get tutorials, product updates, and Keycloak tips delivered to your inbox.

© 2026 Skycloak. All Rights Reserved. Design by Yasser Soliman