[keycloak-user] Keycloak impersonate

GRMAN, Tomas Tomas.GRMAN at orange.com
Thu Dec 1 09:12:19 EST 2016


Hi Marek, is it possible to disable (or completely remove) Keycloak impersonate function?
I understand, that it is a nice feature for troubleshooting, but in our case (for one security sensitive app) it represents a big issue, cause admin can access sensitive data as impersonated user.
I found that it is possible to manage that using dedicated role (impersonation), but in our case it is not sufficient. (it could be added directly in database I guess).
Thanks for any advice.

Tomas



More information about the keycloak-user mailing list