Tutorials, deep dives, and best practices from the Skycloak team.
Plan an Azure B2C migration that cannot lock customers out: dual-run both IdPs, handle unexportable password hashes, cut apps in…
Map Azure AD B2C custom policies to Keycloak: TrustFramework XML, technical profiles, claims transformations, and user journeys translated into Keycloak…
Azure AD B2C is closed to new customers. Compare the three exit paths: stay on B2C, move to Microsoft Entra…
What Microsoft actually said about Azure AD B2C: end of sale for new customers on May 1, 2025, support until…
Auth0 FGA Permissions Index precomputes ReBAC permissions for search and RAG. Here is when Keycloak Authorization Services, OpenFGA or OPA…
Keycloak checks an audience client is enabled during token exchange, but not when that refresh token is used. What CVE-2026-93999…
An IETF draft lets workloads authenticate to an OAuth server with SPIFFE JWT-SVIDs, not client secrets. What it specifies and…
How to architect enterprise SSO so switching identity providers does not break your applications, with Keycloak identity hub patterns and…
How B2B SaaS uses federated identity management to let enterprise customers bring their own IdP, and how to implement it…
When federated SSO makes sense, how an identity hub works, and step-by-step Skycloak setup for OIDC and SAML identity providers…
Get tutorials, product updates, and Keycloak tips delivered to your inbox.