keycloak packaged with love by KubeLauncher
7.0K
Built by KubeLauncherā ā production-grade, open-source, community-first.
Production-ready, broadly compatible Keycloak identity and access management image based on Ubuntu 24.04. Built with OpenJDK 21. Health and metrics endpoints enabled by default. Designed for Kubernetes, built for everyone.
26.5.2, 26.5, 26, latestTags follow semantic versioning. Each push also generates a sha-<commit> tag for pinning to exact builds.
docker run -d --name keycloak \
-e KEYCLOAK_ADMIN=admin \
-e KEYCLOAK_ADMIN_PASSWORD=admin \
ghcr.io/kubelauncher/keycloak:26.5.2
| Variable | Default | Description |
|---|---|---|
KC_HTTP_PORT | 8080 | HTTP listen port |
KC_HTTPS_PORT | 8443 | HTTPS listen port |
KC_DB | dev-file | Database vendor (dev-file, postgres, mysql, mariadb) |
KC_DB_URL | (none) | JDBC database URL |
KC_DB_USERNAME | (none) | Database username |
KC_DB_PASSWORD | (none) | Database password |
KC_HOSTNAME | (none) | Public hostname for Keycloak |
KEYCLOAK_ADMIN | (none) | Initial admin username |
KEYCLOAK_ADMIN_PASSWORD | (none) | Initial admin password |
KC_HEALTH_ENABLED | true | Enable health check endpoints (port 9000) |
KC_METRICS_ENABLED | true | Enable Prometheus metrics endpoints |
KC_EXTRA_ARGS | (none) | Additional arguments passed to kc.sh |
| Port | Description |
|---|---|
8080 | HTTP |
8443 | HTTPS |
9000 | Health and metrics endpoints |
Data is stored in /data/keycloak/. Mount a volume to persist data:
docker run -d -v keycloak-data:/data/keycloak ghcr.io/kubelauncher/keycloak:26.5.2
A production-ready Helm chart is available:
helm install my-keycloak oci://ghcr.io/kubelauncher/charts/keycloak
Built by KubeLauncher ā production-grade, open-source, community-first.
Need a production Kubernetes platform? Let's talkā .
Apache-2.0
Content type
Image
Digest
sha256:74d11e610ā¦
Size
277.7 MB
Last updated
9 days ago
docker pull kubelauncher/keycloak