[keycloak-user] Help Needed on X509 Certificate Authentication with keycloak behind Nginx reverse proxy

FOUTREIN Thomas Thomas.FOUTREIN at imprimerienationale.fr
Tue Sep 26 11:22:54 EDT 2017


?Hello,


I'm  trying  to use authentication wiht X509 client certificate with Keycloak.


I've put the configuration on a specific realm like explained in the keycloak Documentation (http://www.keycloak.org/docs/3.3/server_admin/topics/authentication/x509.html)


All is ok on my dev environment without reverse proxy. When i put the same configuration on integration environnement with NGINX reverse proxy, the certificate never reach keycloak ?

i've succeded to verifiy the client cert with nginx but keycloak nevere succeed to control  the Client CN


Could you help me with the configuration of both nginx et wildfly ?



here is my Nginx conf try & Standalone.xml keycloak conf in attachement

Thank you in advance for the help

Regards

Thomas Foutrein
Imprimerie Nationale









More information about the keycloak-user mailing list