<div dir="ltr">Yes, we call it identity brokering. See <a href="https://keycloak.gitbooks.io/server-adminstration-guide/content/topics/identity-broker.html">https://keycloak.gitbooks.io/server-adminstration-guide/content/topics/identity-broker.html</a></div><div class="gmail_extra"><br><div class="gmail_quote">On 21 September 2016 at 07:52, Adam Keily <span dir="ltr"><<a href="mailto:adam.keily@adelaide.edu.au" target="_blank">adam.keily@adelaide.edu.au</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<div lang="EN-AU" link="#0563C1" vlink="#954F72">
<div>
<p class="MsoNormal">Is it possible to configure keycloak as an IdP proxy?<span><u></u><u></u></span></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">e.g. <a href="https://spaces.internet2.edu/display/GS/SAMLIdPProxy" target="_blank">
https://spaces.internet2.edu/<wbr>display/GS/SAMLIdPProxy</a><u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">We’re thinking about using two keycloak realms, one for our institutional users and one for externally registered users but some SP’s can only handle a single IdP.<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">Any thoughts appreciated.<u></u><u></u></p>
<p class="MsoNormal"><u></u> <u></u></p>
<p class="MsoNormal">Regards<span class="HOEnZb"><font color="#888888"><u></u><u></u></font></span></p><span class="HOEnZb"><font color="#888888">
<p class="MsoNormal">Adam<u></u><u></u></p>
</font></span></div>
</div>
<br>______________________________<wbr>_________________<br>
keycloak-user mailing list<br>
<a href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br>
<a href="https://lists.jboss.org/mailman/listinfo/keycloak-user" rel="noreferrer" target="_blank">https://lists.jboss.org/<wbr>mailman/listinfo/keycloak-user</a><br></blockquote></div><br></div>