Blog

Insights on Identity, Security & Keycloak

Tutorials, deep dives, and best practices from the Skycloak team.

User Federation - LDAP
Articles

Keycloak LDAP User Federation Explained

Understand LDAP federation in Keycloak with import users, edit modes, synchronization, LDAP mappers, and secure LDAPS setup.

George Thomas George Thomas 4 min read
Definition and Basics

SAML vs OIDC: When to Use Each Protocol

Compare SAML and OIDC protocols for SSO. Learn when to use each, how they work in Keycloak, and how to…

Guilliano Molaire Guilliano Molaire 10 min read
auth-patterns

Keycloak + OPA: Fine-Grained Authorization Beyond RBAC

Integrate Open Policy Agent with Keycloak for fine-grained authorization. Learn ABAC, ReBAC patterns, Rego policies, sidecar deployment, and decision logging.

Guilliano Molaire Guilliano Molaire 10 min read
migration-guides

How to Migrate from Clerk to Keycloak

Step-by-step guide to migrate from Clerk to Keycloak. Covers user export, password handling, session migration, component replacement, and webhook setup.

Guilliano Molaire Guilliano Molaire 12 min read
auth-patterns

OAuth for Mobile Apps: Best Practices with Keycloak

Learn mobile OAuth best practices with Keycloak including PKCE, secure token storage, refresh rotation, and biometric binding for iOS and…

Guilliano Molaire Guilliano Molaire 11 min read
SCIM
Articles

SCIM Integration Between Okta and Keycloak

Learn SCIM provisioning from Okta to Keycloak with user sync, group sync, OAuth2 setup, and SCIM interoperability insights.

George Thomas George Thomas 5 min read
auth-patterns

Zero Trust Authentication with Keycloak

Implement zero trust authentication with Keycloak using continuous verification, context-aware policies, step-up MFA, and real-time session risk scoring.

Guilliano Molaire Guilliano Molaire 10 min read
keycloak-operations

Keycloak User Federation: Building a Custom Provider

Build a custom Keycloak UserStorageProvider SPI for user federation with external databases, covering credential validation, caching, and lazy loading.

Guilliano Molaire Guilliano Molaire 15 min read
Definition and Basics

API Authentication Best Practices in 2026

Comprehensive guide to API authentication in 2026 covering OAuth 2.0 with PKCE, mTLS, DPoP, JWT validation, token introspection, and choosing…

Guilliano Molaire Guilliano Molaire 10 min read
Tutorials

Building Custom Authentication Flows in Keycloak

Build custom Keycloak authentication flows using the flow editor, conditional executions, custom authenticator SPIs, and required actions for login logic.

Guilliano Molaire Guilliano Molaire 10 min read

Stay ahead on identity & security

Get tutorials, product updates, and Keycloak tips delivered to your inbox.

© 2026 Skycloak. All Rights Reserved. Design by Yasser Soliman