Single Sign On & Log Out
Log in once to multiple applications by authenticating with Keycloak rather than individual applications
Standard Protocols
Based on standard protocols and provides support for OpenID Connect, OAuth 2.0, and SAML
Centralized Management
For all admins and users, including applications, features, authorization policies, services, sessions, and more
Identity Brokering
Authenticate users with existing OpenID Connect or SAML 2.0 Identity Providers – configure using the admin console
Social Login
Easily enable social login by selecting which social networks you want to add using the admin console
User Federation
Built-in support to connect to existing LDAP or Active Directory servers; or implement your own provider for users in relational database
Authorization Services
Fine-grained authorization services beyond role-based permissions to define exactly the policies you need
High Performance
Lightweight, fast, and reliable, with clustering for scalability and availability
Customizations
Customize the look and feel, password policies, and more; add new functionalities through extensible codes