[keycloak-dev] What is ServerVersionResource used for?

Stian Thorgersen stian at redhat.com
Fri Jan 16 06:57:36 EST 2015


I'm curious about why we have ServerVersionResource? What is it used for?

Having a public endpoint that shows the version of the server makes it easier for script kiddies to scan for servers of a specific version, which can then be targeted for known exploits.


More information about the keycloak-dev mailing list