+
Skip to content

saml-idp: Draft support for extended SAML identity provider configuration in Admin Console #41053

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Draft
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

Bosmonster
Copy link

@ahus1 @mhajas

Context

This draft PR integrates support for the extended SAML identity provider plugin into the Keycloak Admin Console. The goal is to allow users to configure options such as backchannel token retrieval and encrypted SAML elements directly through the UI.

See: GitHub Discussion #39331

Key Features

  • UI support for configuring extended SAML IdP settings
  • Integration tested against Keycloak 26.0.0
  • Enables login via Dutch government identity providers:
    • DigiD (citizens)
    • eHerkenning (companies)
  • Also supports eIDAS (European login framework)

Business Value

This change allows organizations in the Netherlands to use Keycloak out-of-the-box to support government login flows without needing to install custom plugins, greatly simplifying deployments and upgrades.

Current Status (WIP)

  • Initial code integration
  • Integration test setup
  • Final UI polish and validation
  • Investigating and resolving failing CI checks
  • Code cleanup and documentation

Next Steps

We welcome early feedback from maintainers on the approach and UI integration. When the implementation is finalized, this draft will be converted into a full PR.


Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants
点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载