Challenge to Implementing “Scalable” Authorization with Keycloak - Yoshiyuki Tabata, Hitachi, Ltd.
Don't miss out! Join us at our next Flagship Conference: KubeCon + CloudNativeCon Europe in Paris from March 19-22, 2024. Connect with our current graduated, incubating, and sandbox projects as the community gathers to further the education and advancement of cloud native computing. Learn more at https://kubecon.io Challenge to Implementing “Scalable” Authorization with Keycloak - Yoshiyuki Tabata, Hitachi, Ltd. In the OWASP API Security Top 10 2023, three of the top 5 vulnerabilities include the word "authorization (authz)", authz is becoming more important for security considerations. Authz is often developed from scratch, however, along with the expanded service, the authz logic often becomes low scalability due to the increase in authz targets, attributes, and combinations. In such cases, it is common to introduce an authz service. Keycloak, an IAM OSS, also has an authz service. Keycloak has OAuth2 authz server capabilities, too, so by using the authz service, it is possible to centrally manage data related to authentication (authn) and authz. In this session, Yoshiyuki Tabata explains how to implement scalable authz using Keycloak and how to combine it with OPA to avoid Keycloak becoming SPOF and improve authz performance. Furthermore, by combining with CockroachDB, he introduces an authn and authz solution that withstands regional failures and operates in multi-cloud environments.

Running a Highly Available Identity and Access Management with Keycloak - R. Emerson, K. Akella

7 Authentication Concepts Every Developer Should Know

Virtual Systems on PAN-OS firewalls

Keycloak SRE SIG: How to load-test Keycloak (2024-10-14)

#Keycloak DevDay 2024: Flexible Access Management w/ Keycloak & OPA (Thomas Darimont, codecentric)

WoSC11 Session 2 (3 papers)

OWASP's Top 10 Ways to Attack LLMs: AI Vulnerabilities Exposed

Cloud Native Application Threat Modeling and Adversary Emulation : Techniques and... - Rafik Harabi

Role-based access control (RBAC) vs. Attribute-based access control (ABAC)

Cybersecurity Architecture: Five Principles to Follow (and One to Avoid)

#Keycloak DevDay 2024: Best Practices for Extension Development (Sven-Torben Janus, Conciso)

Fine-Grained Authorization & Beyond: Mastering Keycloak Patterns in AI-infused Apps - Daniel Oh

Authorization in a Distributed / Microservice System | .NET Conf 2022

Getting Started With Keycloak Identity Provider (free Identity Server alternative)

Inside Anthropic, the $965 Billion AI Juggernaut | The Circuit

I turned an old van into a 2-STORY tiny house

Spring boot 3 Keycloak integration for beginners | The complete Guide

What do tech pioneers think about the AI revolution? - The Engineers, BBC World Service

How ASML Makes Chips Faster With Its New $400 Million High NA Machine

