[keycloak-user] Get rid of /auth/realms/<realmname>

Kevin Thorpe kevin.thorpe at p-i.net
Wed Mar 1 12:13:04 EST 2017


I think there was some talk of disabling or restricting realms. However,
for customers we front Keycloak with Nginx as a reverse proxy and filter
the master realm there so it is only available inside our network.


Kevin Thorpe

*VP Enterprise Platform*
w: www.p-i.net
p: *+44 (0)20 3005 6750 <+44%2020%203005%206750>*
a: 7th Floor, 52 Grosvenor Gardens, London SW1W 0AU


  <https://twitter.com/pidataanalytics>
<https://www.linkedin.com/company/piltd>


_________________________________________________________

This email and any files transmitted with it are confidential and intended
solely for the use of the individual or entity to whom they are addressed.
If you have received this email in error please notify the system manager.
This message contains confidential information and is intended only for the
individual named. If you are not the named addressee you should not
disseminate, distribute or copy this e-mail. Please notify the sender
immediately by e-mail if you have received this e-mail by mistake and
delete this e-mail from your system. If you are not the intended recipient
you are notified that disclosing, copying, distributing or taking any
action in reliance on the contents of this information is strictly
prohibited


On 1 March 2017 at 15:24, Patrick Brunmayr <jay at kpibench.com> wrote:

> Hello
>
> How can i disable access to this kind of URls ?
>
> http://localhost:8080/*auth/realms/master*
>
> There is a always a JSON output. I dont want anyone to see this ? How can i
> disable that ?
>
> Thank you
> _______________________________________________
> keycloak-user mailing list
> keycloak-user at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/keycloak-user
>


More information about the keycloak-user mailing list