[keycloak-user] X509 Registration Flow

Marek Posolda mposolda at redhat.com
Fri Apr 26 03:58:19 EDT 2019


On 24/04/2019 17:43, Justin Williams wrote:
> Hello,
>
> I currently have Keycloak (5.0.0) configured to use X.509 client
> certificate authentication. However I have not been able to figure out a
> good way to handle the registration flow. What I would like to happen is
> have the `username` field on the registration form automatically populated
> with the certificate CN. Is there a way to handle this out of the box, or
> do I need to write a custom authentication SPI?

I think you need to write custom Authentication SPI. See documentation 
for the Registration SPI - maybe we have some examples or quickstarts 
for this, but not 100% sure.

Marek

>
> Thanks,
> Justin W.
> _______________________________________________
> keycloak-user mailing list
> keycloak-user at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/keycloak-user




More information about the keycloak-user mailing list