>
>Cross-posting...We are considering using keycloak as an STS (Secure Token Service). One of the requirements is PK >certificate user authentication. It seems the only supported user authentication mechanism in keycloak is user >credentials (user name / password). Before rolling out our own implementation, I just want to make sure I am not >missing something obvious and that PK authentication is indeed not supported in keycloak yet.