Technology · Agentic → IAM · Open Source · wiki:deep
Keycloak is open-source identity and access management: add authentication to applications and secure services without building your own user store. It provides user federation, strong authentication, user management, fine-grained authorization, and related IAM features. Run from the official distribution (bin/kc.sh start-dev) or container (quay.io/keycloak/keycloak). CNCF-aligned Apache-2.0 project with Java server and client adapters.
Agents and humans need a shared notion of who is acting. Keycloak is the research default for IdP/SSO/federation in the IAM cell — principals that Cedar/OPA policies can name. Prefer OPA/Cedar for authorization decisions once identity is established; prefer Earned Autonomy Protocol for how execution scope expands with evidence.
Operators deploy Keycloak as the identity provider. Applications and APIs delegate login/token issuance; Keycloak federates directories, issues tokens, and can enforce authorization settings. Clients use Keycloak adapters/SDKs for OIDC/SAML flows.
Related: cedar · earned-autonomy-protocol · open-policy-agent · topics/13-governance-policy
Scroll inside the canvas to pan
Catalog backlinks — what points here (wiki “what links here”).
Claims below are backed by science sources on disk.
IdP / IAM product role
keycloak/keycloak · MODERATE
“Open Source Identity and Access Management For Modern Applications and Services”
Docs / operators
Keycloak documentation · MODERATE
“Add authentication to applications and secure services with minimum effort. No need to deal with storing users or authenticating users.”
Contrast vs OPA
OPA contrast · MODERATE
“Open Policy Agent (OPA) is an open source, general-purpose policy engine.”
Features and peers linked from the catalog map — not a second product surface.
Primary repo github.com/keycloak/keycloak · Open Source
technologies/keycloak/README.md
9 tags · 41 out · 42 in · 3 artifacts · 0 gaps · 39 corpus docs
map_edge · 14
tech_features · 1
tech_quote · 9
tech_readme · 1
tech_science_source · 3
tech_section · 11