1. Keycloak 㧠SSO ç°é 義ç(ããªã¹ ããã¾ã) @emaggame http://morec.at 2014-12-13(å) 第ä¹å #æ¸è°·java 1 2. 2014-12-13(å) 第ä¹å #æ¸è°·java 2 ã¢ã¸ã§ã³ã â SSOã®æ©ã¿ â Keycloakã¨ã¯ â Keycloakå°å ¥ â Keycloakã㢠â Keycloakã®å人çã«æãããã¨ãã â æ¬æ¥ã®ã¾ã¨ã 3. 2014-12-13(å) 第ä¹å #æ¸è°·java 3 SSOã®æ©ã¿ â ä»çµã¿ä½ããé£ãã â çµ±ä¸ã¤ã³ã¿ã¼ãã§ã¼ã¹ãç¨æããé¢é£ããã¢ã㪠ã±ã¼ã·ã§ã³ãã¹ã¦ãå©ç¨ããå¿ è¦ããããæ¢åã®ã¢ ããªã±ã¼ã·ã§ã³ã¯ã¦ã¼ã¶æ å ±ã® DB å¤æ´çºç â SSLã¯ã©ã¤ã¢ã³ã証ææ¸ã¯ã¦ã¼ã¶ã«å°å ¥ããæ·å± ã é«ã(社å ã·ã¹ãã ã§ããã°ä¸çªæå¹?) â APãµã¼ãåºææ©è½ãå©ç¨ã§ããããSSOèªè¨¼ ã
æ¬é£è¼ã§ã¯ãè¿å¹´æ³¨ç®ããã¦ããèªè¨¼ãããã³ã«ãOpenID Connectãããµãã¼ããããªã¼ãã³ã½ã¼ã¹ã®ã·ã³ã°ã«ãµã¤ã³ãªã³ï¼SSOï¼ã½ããã¦ã§ã¢ãKeycloakãã®æ´»ç¨æ¹æ³ã解説ãã¦ããã¾ãã第1åç®ã¯ãAPIã«ãããèªè¨¼ï¼èªå¯ã®ä»çµã¿ã¨Keycloakã®æ¦è¦ãç´¹ä»ãã¾ãã é£è¼ç®æ¬¡ APIã«ãããèªè¨¼ï¼èªå¯ã®ä»çµã¿ è¿å¹´ãéèãæµéåéã§æ³¨ç®ããã¦ãããAPIã¨ã³ããã¼ããããã¤ã¯ããµã¼ãã¹ã¢ã¼ããã¯ãã£ããªã©ã®ç»å ´ã«ããããµã¼ãã¹ã®æ©è½ããREST APIãã¨ãã¦æä¾ãããã¨ãå½ããåã«ãªã£ã¦ãã¦ãã¾ããããã¦ãREST APIãå ¬éããããã«ã¯ã誰ãã¢ã¯ã»ã¹ãã¦ããã®ãã確èªããããã®ãèªè¨¼ï¼Authenticationï¼ãã¨ãAPIã¸ã®ã¢ã¯ã»ã¹ã誰ã«è¨±å¯ããã®ãã¨ãããèªå¯ï¼Authorizationï¼ãã®ä»çµã¿ãä¸å¯æ¬ ã§ãã ããããè¤æ°ã®ãµã¼ãã¹ãããããåå¥ã«èªè¨¼ï¼è¨±å¯ã
Single-Sign On Users authenticate with Keycloak rather than individual applications. This means that your applications don't have to deal with login forms, authenticating users, and storing users. Once logged-in to Keycloak, users don't have to login again to access a different application. This also applies to logout. Keycloak provides single-sign out, which means users only have to logout once t
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}