Sign inSign up

alizarion/httpd-proxy-federate

By alizarion

•Updated over 10 years ago

Simple proxy that federate keycloak user with saml and openic modules

Image
0

582

alizarion/httpd-proxy-federate repository overview

⁠identity-federation

Author : Selim BENSENOUCI

#What is that?

Simple POC using keycloak as IDP and mod_auth_openidc to federate SSO for 2 applications.
with front http proxy.

#System Requirements

Docker Engine version 1.7.1 or greater
Docker-compose

#Components

  • keycloak as OpenID/SAML Provider (IDP).
  • java-app, simple java app that print logged user informations.
  • php-app, simple php app service provider associated with the IDP.
  • httpd-proxy-federate, front proxy that sucure java-app and php-app .
  • keycloak-mysql database, to store IPD configuration and store user data.

#RUN git clone https://github.com/alizarion/identity-federation.git⁠ cd identity-federation docker-compose up

  • After container start, go to http://localhost/⁠, you will access to the index of the http proxy
  • Select on of the exposed app, you will be redirected keycloak IDP
  • log with the user John Doe.
    * username : john * password : azerty
  • you after that you will be redirected to the app that you have select at the first step.
  • you can also access to the second with the same identity token.

#How ?

to simplify integration of federated SSO, this model uses a front-end proxy to manage the openid saml and workflows, backend application simply reads the header http enriched with the authenticated user informations exported token.

diagram

#Keycloak Admin credential

  • username : admin
  • password : azerty

Tag summary

Content type

Image

Digest

Size

245.8 MB

Last updated

over 10 years ago

docker pull alizarion/httpd-proxy-federate