[keycloak-user] Keycloak impersonate
GRMAN, Tomas
Tomas.GRMAN at orange.com
Thu Dec 1 09:12:19 EST 2016
Hi Marek, is it possible to disable (or completely remove) Keycloak impersonate function?
I understand, that it is a nice feature for troubleshooting, but in our case (for one security sensitive app) it represents a big issue, cause admin can access sensitive data as impersonated user.
I found that it is possible to manage that using dedicated role (impersonation), but in our case it is not sufficient. (it could be added directly in database I guess).
Thanks for any advice.
Tomas
More information about the keycloak-user
mailing list