
Single Sign On & Log Out
Log in once to multiple applications by authenticating with Keycloak rather than individual applications

Standard Protocols
Based on standard protocols and provides support for OpenID Connect, OAuth 2.0, and SAML

Centralized Management
For all admins and users, including applications, features, authorization policies, services, sessions, and more

Identity Brokering
Authenticate users with existing OpenID Connect or SAML 2.0 Identity Providers – configure using the admin console

Social Login
Easily enable social login by selecting which social networks you want to add using the admin console

User Federation
Built-in support to connect to existing LDAP or Active Directory servers; or implement your own provider for users in relational database

Authorization Services
Fine-grained authorization services beyond role-based permissions to define exactly the policies you need

High Performance
Lightweight, fast, and reliable, with clustering for scalability and availability

Customizations
Customize the look and feel, password policies, and more; add new functionalities through extensible codes