[keycloak-user] Force the display of Keycloak login page when using "authenticate by default" external OIDC IdP

Stian Thorgersen sthorger at redhat.com
Wed Sep 7 08:39:06 EDT 2016


Not at the moment, but it will be possible in 2.2.0.CR1 which will allow
you to set an empty value for kc_idp_hint which will override the default
identity provider.

On 29 August 2016 at 20:34, Gabriel Lavoie <glavoie at gmail.com> wrote:

> Hi,
>      we are currently using Keycloak as a broker to do the SAML
> authentication to an external service for us. Keycloak is configured to
> authenticate the user with an external IdP (our application) that is set
> with the "Authenticate by default" flag to ON.
>
> Is it possible to still force the display of the Keycloak login page, but
> only for some scenarios? We would like to have system integration users
> that don't exist in our application (not exposed to our customers), but
> would still be usable to access the external service (with proper roles).
>
> Thanks,
>
> Gabriel
>
> --
> Gabriel Lavoie
> glavoie at gmail.com
>
> _______________________________________________
> keycloak-user mailing list
> keycloak-user at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/keycloak-user
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.jboss.org/pipermail/keycloak-user/attachments/20160907/2b39cb11/attachment.html 


More information about the keycloak-user mailing list