Afraid it's hardcoded to use Bouncycastle as the provider. You can open a JIRA for it though.

On 14 April 2016 at 13:22, Akshay Kini <kga.official@gmail.com> wrote:
Hi Folks,

Does Keycloak adhere to the JCA (Java Cryptography Architecture)? i.e. if I change the JVM's cryptography provider to a custom one, Keycloak should use that provider for all cryptography operations.

Some context for this:
In our use case, our entire JVM runs with a FIPS compliant Cryptography Provider being available. If code that is running, on it is using the JCA correctly, then that code will also be FIPS ready.

Thanks,
Regards,
Akshay



_______________________________________________
keycloak-user mailing list
keycloak-user@lists.jboss.org
https://lists.jboss.org/mailman/listinfo/keycloak-user