# identity and access management

Identity and access management is the collection of policies, processes, and systems used to establish identities and manage users' access privileges within systems.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Architecting resilient authentication with Amazon Cognito multi-Region replication

DevFeed: [Architecting resilient authentication with Amazon Cognito multi-Region replication](<https://devfeed.tech/articles/architecting-resilient-authentication-with-amazon-cognito-multi-region-replication-26906.md>)

Original publisher: [Read original article](<https://aws.amazon.com/blogs/security/architecting-resilient-authentication-with-amazon-cognito-multi-region-replication/>)

Author: Abrom Douglas

Published: 2026-09-15T19:00:52Z

Content type: tutorial

Language: en

Sources: [AWS Security Blog](<https://devfeed.tech/sources/aws-security-blog.md>)

Topics: [Amazon Cognito](<https://devfeed.tech/topics/amazon-cognito.md>), [Replication](<https://devfeed.tech/topics/replication.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [real-time](<https://devfeed.tech/topics/real-time.md>), [JSON Web Tokens](<https://devfeed.tech/topics/jwt.md>)

Tags: [advanced-300](<https://devfeed.tech/tags/advanced-300.md>), [amazon-cognito](<https://devfeed.tech/tags/amazon-cognito.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [aws](<https://devfeed.tech/tags/aws.md>), [failover](<https://devfeed.tech/tags/failover.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [real-time](<https://devfeed.tech/tags/real-time.md>), [replication](<https://devfeed.tech/tags/replication.md>), [security-blog](<https://devfeed.tech/tags/security-blog.md>), [security-identity-compliance](<https://devfeed.tech/tags/security-identity-compliance.md>), [technical-how-to](<https://devfeed.tech/tags/technical-how-to.md>), [token](<https://devfeed.tech/tags/token.md>)

### AI overview

This AWS article explains how Amazon Cognito multi-Region replication supports resilient authentication by replicating user pools across AWS Regions, with eventual consistency, failover, and interoperable sessions and JSON web tokens. It also covers preparation, architecture decisions, and failover strategies for B2C, B2B, and M2M use cases.

### Source excerpt

Your consumer identity and access management (CIAM) system is the foundation of your customer experience. It's how users sign in, access services, and engage with your applications. As your business scales across geographies, ensuring authentication is always available becomes a core architectural requirement. However, building multi-Region authentication has traditionally required complex custom replication solutions that [...]

## What is CIAM in 2026 and why does it matter?

DevFeed: [What is CIAM in 2026 and why does it matter?](<https://devfeed.tech/articles/what-is-ciam-in-2026-and-why-does-it-matter-31441.md>)

Original publisher: [Read original article](<https://www.twilio.com/en-us/blog/insights/best-practices/what-is-ciam>)

Author: Ravleen Kaur

Published: 2026-09-15T00:00:00Z

Content type: tutorial

Language: en

Sources: [Twilio Blog](<https://devfeed.tech/sources/twilio-blog.md>)

Topics: [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [trust](<https://devfeed.tech/topics/trust.md>), [ai-governance](<https://devfeed.tech/topics/ai-governance.md>), [Security](<https://devfeed.tech/topics/security.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [Generative AI](<https://devfeed.tech/topics/generative-ai.md>)

Tags: [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [ai-governance](<https://devfeed.tech/tags/ai-governance.md>), [email](<https://devfeed.tech/tags/email.md>), [fraud](<https://devfeed.tech/tags/fraud.md>), [fraud-detection](<https://devfeed.tech/tags/fraud-detection.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [industry-insights](<https://devfeed.tech/tags/industry-insights.md>), [messaging](<https://devfeed.tech/tags/messaging.md>), [mobile](<https://devfeed.tech/tags/mobile.md>), [trust](<https://devfeed.tech/tags/trust.md>)

### AI overview

This article explains how customer identity and access management (CIAM) is evolving from point-in-time password checks into a continuous trust and control layer. It describes CIAM's role in authenticating users, governing delegated authority for AI agents, evaluating risk across channels, and balancing low-friction access with fraud detection. It also distinguishes customer identity from workforce IAM.

### Source excerpt

Discover how customer identity and access management (CIAM) uses continuous trust, deepfake defense, and agentic AI governance to protect users.

## Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection

DevFeed: [Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection](<https://devfeed.tech/articles/unmasking-cloud-identities-from-behavioral-clustering-to-automated-detection-17391.md>)

Original publisher: [Read original article](<https://unit42.paloaltonetworks.com/behavioral-clustering-map-to-cloud-identities/>)

Author: Osher Jacob

Published: 2026-09-14T10:00:01Z

Content type: article

Language: en

Sources: [Unit 42](<https://devfeed.tech/sources/unit-42.md>)

Topics: [AWS CloudTrail](<https://devfeed.tech/topics/aws-cloudtrail.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>), [threat detection](<https://devfeed.tech/topics/threat-detection.md>), [Threat Research](<https://devfeed.tech/topics/threat-research.md>), [SIEM, Security, Observability](<https://devfeed.tech/topics/siem-security-observability.md>), [Machine learning](<https://devfeed.tech/topics/machine-learning.md>), [Algorithms](<https://devfeed.tech/topics/algorithms.md>), [SQL](<https://devfeed.tech/topics/sql.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>)

Tags: [algorithms](<https://devfeed.tech/tags/algorithms.md>), [amazon-web-services-aws](<https://devfeed.tech/tags/amazon-web-services-aws.md>), [analysis](<https://devfeed.tech/tags/analysis.md>), [aws-cloudtrail](<https://devfeed.tech/tags/aws-cloudtrail.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [cloud-cybersecurity-research](<https://devfeed.tech/tags/cloud-cybersecurity-research.md>), [cloud-detection](<https://devfeed.tech/tags/cloud-detection.md>), [devops](<https://devfeed.tech/tags/devops.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [logs](<https://devfeed.tech/tags/logs.md>), [machine-learning](<https://devfeed.tech/tags/machine-learning.md>), [post](<https://devfeed.tech/tags/post.md>), [sql](<https://devfeed.tech/tags/sql.md>), [threat-detection](<https://devfeed.tech/tags/threat-detection.md>), [threat-research](<https://devfeed.tech/tags/threat-research.md>)

### AI overview

This article presents a behavioral clustering model for mapping cloud identities to functional roles using activity patterns from audit logs. It applies unsupervised machine learning with UMAP and HDBSCAN to data from more than 40,000 identities across 125 cloud environments, and shows how the resulting map can support automated threat detection. The article also explains how lightweight heuristics extracted from the map can classify identities at scale using standard SQL, reducing the need for continuous resource-intensive machine learning pipelines.

### Source excerpt

We designed a behavioral clustering model to map cloud identity roles from audit logs, enabling continuous threat detection using standard SQL queries. The post Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection appeared first on Unit 42.

## How Does CockroachDB Automate SQL User Lifecycle Management?

DevFeed: [How Does CockroachDB Automate SQL User Lifecycle Management?](<https://devfeed.tech/articles/how-does-cockroachdb-automate-sql-user-lifecycle-management-23818.md>)

Original publisher: [Read original article](<https://cockroachlabs.com/blog/sql-user-lifecycle-management-automation>)

Author: Pritesh Lahoti,Biplav Saraf,Sourav Sarangi

Published: 2026-08-28T00:00:00Z

Content type: tutorial

Language: en

Sources: [Cockroach Labs](<https://devfeed.tech/sources/cockroach-labs.md>)

Topics: [CockroachDB](<https://devfeed.tech/topics/cockroachdb.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [active directory](<https://devfeed.tech/topics/active-directory.md>), [Entra ID](<https://devfeed.tech/topics/entra-id.md>), [okta](<https://devfeed.tech/topics/okta.md>), [Microsoft](<https://devfeed.tech/topics/microsoft.md>)

Tags: [active-directory](<https://devfeed.tech/tags/active-directory.md>), [cockroachdb](<https://devfeed.tech/tags/cockroachdb.md>), [entra-id](<https://devfeed.tech/tags/entra-id.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [microsoft](<https://devfeed.tech/tags/microsoft.md>), [okta](<https://devfeed.tech/tags/okta.md>)

### AI overview

The article addresses how CockroachDB automates SQL user lifecycle management and notes that large enterprises commonly rely on identity provider and identity and access management platforms such as Okta, Microsoft Entra ID, Microsoft Active Directory, and Ory.

### Source excerpt

Fortune 1000 enterprises widely rely on major Identity Provider (IdP) and Identity and Access Management (IAM) platforms like Okta, Microsoft Entra ID, Microsoft Active Directory, and Ory.

## KEYCONF26 agenda and speakers announced for 8 October 2026 in Prague

DevFeed: [KEYCONF26 agenda and speakers announced for 8 October 2026 in Prague](<https://devfeed.tech/articles/keyconf26-speakers-announced-save-your-spot-today-31791.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2026/08/keyconf26-prague-schedule>)

Author: Alina Rudyk

Published: 2026-08-23T00:00:00Z

Content type: news

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [openid](<https://devfeed.tech/topics/openid.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [iam](<https://devfeed.tech/tags/iam.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [openid](<https://devfeed.tech/tags/openid.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [saml](<https://devfeed.tech/tags/saml.md>), [security](<https://devfeed.tech/tags/security.md>), [sso](<https://devfeed.tech/tags/sso.md>), [talk](<https://devfeed.tech/tags/talk.md>)

### AI overview

Keycloak has announced the speaker line-up and agenda for KEYCONF26, taking place in Prague on 8 October 2026. The programme covers Keycloak operations, extensions, identity standards, security, access tokens, and related use cases.

### Source excerpt

The KEYCONF26 speaker line-up is taking shape, and this year's agenda is now live! 📍 KEYCONF26 is taking place in Prague on 8 October 2026. This October, the Keycloak community will come together once again for a full day of technical insights, real-world experiences and conversations around identity and access management. This year's programme brings together speakers from across the Keycloak ecosystem - from organisations running Keycloak in complex production environments to experts exploring new standards, architectures and use cases. Talk highlights The talks announced highlight the broad spectrum of the Keycloak ecosystem: how to run Keycloak securely and at scale, how to extend it, and how identity is evolving to support new technologies and use cases. Here are just a few highlights: What Role Can Keycloak Play for International Science? An Introduction to the OpenID Shared Signals Framework Keycloak becomes familiar with AI: the advancement of integrating Keycloak with AI Wicked Keycloak challenges and how to resolve them Token Hygiene - Why Your Keycloak Access Tokens Need a Diet And that is only a glimpse of what is waiting for you in Prague 👉 Explore the KEYCONF26 agenda announced: https://keyconf.dev/ A great place to network KeyConf is about more than the talks. It is also an opportunity to meet the people behind the technology, exchange experiences and connect with others working on similar identity challenges. Networking lunch Our extended lunch break gives you plenty of time to meet fellow attendees, swap ideas and continue conversations from the sessions in a relaxed setting. Meet the community KeyConf brings together Keycloak users, contributors, developers, architects, security specialists and IAM experts from different organisations and industries. Whether you want to discuss a challenge from your own Keycloak environment, exchange experiences or simply meet people from the community in person, there will be plenty of opportunities to connect thr

## Updates to your AWS Sign-In experience

DevFeed: [Updates to your AWS Sign-In experience](<https://devfeed.tech/articles/updates-to-your-aws-sign-in-experience-4692.md>)

Original publisher: [Read original article](<https://aws.amazon.com/blogs/security/updates-to-your-aws-sign-in-experience/>)

Author: Vaibhav Chowla

Published: 2026-08-17T17:22:33Z

Content type: release

Language: en

Sources: [AWS Security Blog](<https://devfeed.tech/sources/aws-security-blog.md>)

Topics: [Amazon Web Services (AWS)](<https://devfeed.tech/topics/amazon-web-services-aws.md>), [AWS IAM](<https://devfeed.tech/topics/aws-iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [AWS IAM Identity Center](<https://devfeed.tech/topics/aws-iam-identity-center.md>), [browser](<https://devfeed.tech/topics/browser.md>)

Tags: [amazon-web-services-aws](<https://devfeed.tech/tags/amazon-web-services-aws.md>), [aws](<https://devfeed.tech/tags/aws.md>), [aws-iam](<https://devfeed.tech/tags/aws-iam.md>), [aws-iam-identity-center](<https://devfeed.tech/tags/aws-iam-identity-center.md>), [aws-identity-and-access-management-iam](<https://devfeed.tech/tags/aws-identity-and-access-management-iam.md>), [browser](<https://devfeed.tech/tags/browser.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [intermediate-200](<https://devfeed.tech/tags/intermediate-200.md>), [scripted](<https://devfeed.tech/tags/scripted.md>), [security-blog](<https://devfeed.tech/tags/security-blog.md>), [security-identity-compliance](<https://devfeed.tech/tags/security-identity-compliance.md>), [uncategorized](<https://devfeed.tech/tags/uncategorized.md>), [updates](<https://devfeed.tech/tags/updates.md>)

### AI overview

AWS is gradually introducing a redesigned sign-in and sign-up experience to a limited number of customers. The changes add new account access options, unify the initial email entry point, and refresh the session selection page while existing customers continue using their current credentials and sign-in methods.

### Source excerpt

Amazon Web Services (AWS) is gradually introducing updates to the AWS Sign-In and sign-up experience to a limited number of customers. We're sharing these changes so you will know what to expect as we gradually make the updated experience available to more customers. These updates include new options for creating and accessing AWS accounts. To [...]

## Why AI Agents Need Dedicated Identity and Access Controls

DevFeed: [Why AI Agents Need Dedicated Identity and Access Controls](<https://devfeed.tech/articles/why-your-ai-agent-has-an-identity-problem-23743.md>)

Original publisher: [Read original article](<https://cockroachlabs.com/blog/ai-agent-identity-security>)

Author: Quentin Packard

Published: 2026-07-17T00:00:00Z

Content type: opinion

Language: en

Sources: [Cockroach Labs](<https://devfeed.tech/sources/cockroach-labs.md>)

Topics: [AI Agent](<https://devfeed.tech/topics/ai-agent.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Security](<https://devfeed.tech/topics/security.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [audit trail](<https://devfeed.tech/topics/audit-trail.md>)

Tags: [ai-agent](<https://devfeed.tech/tags/ai-agent.md>), [apis](<https://devfeed.tech/tags/apis.md>), [audit-trail](<https://devfeed.tech/tags/audit-trail.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [permission](<https://devfeed.tech/tags/permission.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

The article argues that production AI agents need dedicated identities and access controls because shared service accounts, broad permissions, and incomplete audit trails make it difficult to determine what agents accessed and why. Traditional IAM was designed around human actors and does not fully address autonomous software processes that act rapidly, access many records, call external APIs, or delegate work to other agents.

### Source excerpt

The agent your team just shipped to external users has the ability to read customer records, execute transactions, and call external APIs.

## Automating Identity and Access for FedRAMP 20x KSIs with Teleport

DevFeed: [Automating Identity and Access for FedRAMP 20x KSIs with Teleport](<https://devfeed.tech/articles/automating-identity-and-access-for-fedramp-20x-ksis-with-teleport-29580.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/automating-identity-access-fedramp-20x/>)

Author: info@goteleport.com (Nicolas Morris)

Published: 2026-06-17T00:00:00Z

Content type: tutorial

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [audit trail](<https://devfeed.tech/topics/audit-trail.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Logging](<https://devfeed.tech/topics/logging.md>), [Monitoring](<https://devfeed.tech/topics/monitoring.md>), [Security](<https://devfeed.tech/topics/security.md>), [CI/CD](<https://devfeed.tech/topics/cicd.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>)

Tags: [audit-trail](<https://devfeed.tech/tags/audit-trail.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [credentials](<https://devfeed.tech/tags/credentials.md>), [fedramp](<https://devfeed.tech/tags/fedramp.md>), [fedramp-20x](<https://devfeed.tech/tags/fedramp-20x.md>), [hardcoded-credentials](<https://devfeed.tech/tags/hardcoded-credentials.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [logging](<https://devfeed.tech/tags/logging.md>), [monitoring](<https://devfeed.tech/tags/monitoring.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

This article explains how FedRAMP 20x changes identity and access compliance toward persistent validation using machine-readable evidence. It describes how unified identity management and audit trails can help address gaps in machine-to-machine authentication and continuous KSI validation.

### Source excerpt

Learn how to automate identity and access for FedRAMP 20x KSIs with a unified audit trail for identities, access, and persistent evidence.

## Auth0 joins the Vercel Marketplace

DevFeed: [Auth0 joins the Vercel Marketplace](<https://devfeed.tech/articles/auth0-joins-the-vercel-marketplace-814.md>)

Original publisher: [Read original article](<https://vercel.com/changelog/auth0-joins-the-vercel-marketplace>)

Author: Hedi Zandi

Published: 2026-06-15T04:00:00Z

Content type: release

Language: en

Sources: [Vercel News](<https://devfeed.tech/sources/vercel-news.md>)

Topics: [Auth0](<https://devfeed.tech/topics/auth0.md>), [Vercel](<https://devfeed.tech/topics/vercel.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Next.js](<https://devfeed.tech/topics/next-js.md>), [Provisioning](<https://devfeed.tech/topics/provisioning.md>), [dashboards](<https://devfeed.tech/topics/dashboards.md>), [SDKs](<https://devfeed.tech/topics/sdks.md>), [App](<https://devfeed.tech/topics/app.md>)

Tags: [authentication](<https://devfeed.tech/tags/authentication.md>), [dashboards](<https://devfeed.tech/tags/dashboards.md>), [development](<https://devfeed.tech/tags/development.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [integration](<https://devfeed.tech/tags/integration.md>), [next-js](<https://devfeed.tech/tags/next-js.md>), [platform](<https://devfeed.tech/tags/platform.md>), [production](<https://devfeed.tech/tags/production.md>), [sync](<https://devfeed.tech/tags/sync.md>), [vercel](<https://devfeed.tech/tags/vercel.md>)

### AI overview

Auth0 is now available through the Vercel Marketplace for quick integration with Vercel apps. The integration supports Next.js applications through the Auth0 Next.js SDK and provides authentication, user management, hosted dashboards, sessions, roles, automatic application provisioning, and synchronized configuration across Development, Preview, and Production environments.

### Source excerpt

You can now add Auth0, a production-ready authentication to your Vercel app in just a few clicks. Built for modern frameworks like Next.js, Auth0 is an identity and access management platform for securing your apps and agentic workflows. This integration enables: Automatic provisioning of an Auth0 application that connects to your Vercel project Out-of-the-box support for your Next.js applications using the Auth0 Next.js SDK Complete user management with hosted dashboards, sessions, and roles Sync authentication configuration across Development, Preview, and Production environments Get started with Auth0 on the Vercel Marketplace. Read more

## Announcing Keycloak's Identity Summit: KEYCONF26

DevFeed: [Announcing Keycloak's Identity Summit: KEYCONF26](<https://devfeed.tech/articles/announcing-keycloak-s-identity-summit-keyconf26-31774.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2026/05/keyconf26-prague-announce>)

Author: Nathalia Pinesi, Alexander Schwartz

Published: 2026-05-02T00:00:00Z

Content type: article

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [OAuth 2.0](<https://devfeed.tech/topics/oauth2.md>), [OpenID connect (OIDC)](<https://devfeed.tech/topics/oidc.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [2026](<https://devfeed.tech/tags/2026.md>), [conference](<https://devfeed.tech/tags/conference.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [idm](<https://devfeed.tech/tags/idm.md>), [implementation](<https://devfeed.tech/tags/implementation.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [oauth2](<https://devfeed.tech/tags/oauth2.md>), [oidc](<https://devfeed.tech/tags/oidc.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [saml](<https://devfeed.tech/tags/saml.md>), [security](<https://devfeed.tech/tags/security.md>), [sso](<https://devfeed.tech/tags/sso.md>), [summit](<https://devfeed.tech/tags/summit.md>)

### AI overview

Keycloak announces KEYCONF26, its annual Identity Summit for the Keycloak user community, taking place in Prague on October 8, 2026. The event will feature interactive sessions, practical discussions, networking, and a call for speakers and sponsors.

### Source excerpt

Our annual conference dedicated to the Keycloak user community returns, with even more content and networking opportunities than last year. It's the perfect place to interact, learn, share, and exchange insights and real-world use cases, network with fellow experts, users, and contributors. 📍 Introducing KEYCONF26 - taking place in Prague on October 8th, 2026! This year's edition of the Keycloak Identity Summit features interactive sessions, and even more opportunities to engage with the people shaping the future of identity and access management. Call for sessions The call for sessions is open until May 24th, 2026 -- we'd love to hear from you! We're looking for sessions on topics such as: Keycloak deployment and operations at scale Human and non-human identities in the world of AI OAuth2, OIDC, and evolving identity standards Security best practices and hardening EU Digital Identity Wallets and eIDAS Migration stories and real-world use cases Extending and customizing Keycloak Submit your proposal now! What to expect at KEYCONF26 Inspiring Keynote Speaker Hear from Hannah Short, Team Lead for Identity and Access Management at CERN, how they are using Keycloak as a highly performant and reliable SSO running on Kubernetes. Connect with like-minded professionals From long-time contributors to those just starting their IAM journey, KEYCONF26 is the perfect place to meet others working with identity, OAuth2, OIDC, and more. Networking lunch Our extended lunch break is designed to help you meet fellow attendees, swap ideas, and build meaningful professional connections in a relaxed setting. Business drinks Stick around after the last session for informal networking over drinks. Want to sponsor this year's Business Drink? Get in touch with us--we'd love to partner with you! Expert sessions and real-world use cases Gain practical insights into Keycloak implementation, security improvements, OAuth2 best practices, and evolving identity standards. Learn how to use EU Digital

## NIST and AI agents: 1Password's approach to agent identity

DevFeed: [NIST and AI agents: 1Password's approach to agent identity](<https://devfeed.tech/articles/nist-and-ai-agents-1password-s-approach-to-agent-identity-1893.md>)

Original publisher: [Read original article](<https://1password.com/blog/agent-identity>)

Author: info@1password.com (Jacob DePriest; Nancy Wang; Jeff Malnick)

Published: 2026-04-08T00:00:00Z

Content type: article

Language: en

Sources: [Blog on 1Password Blog](<https://devfeed.tech/sources/blog-on-1password-blog.md>)

Topics: [AI Agent](<https://devfeed.tech/topics/ai-agent.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Zero Trust](<https://devfeed.tech/topics/zero-trust.md>), [Security](<https://devfeed.tech/topics/security.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [interoperability](<https://devfeed.tech/topics/interoperability.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [Deployment](<https://devfeed.tech/topics/deployment.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [deployment](<https://devfeed.tech/tags/deployment.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [interoperability](<https://devfeed.tech/tags/interoperability.md>), [security](<https://devfeed.tech/tags/security.md>), [zero-trust](<https://devfeed.tech/tags/zero-trust.md>)

### AI overview

This article presents 1Password's approach to agent identity for AI agents. It describes identity as a set of challenges involving identification, attestation, enrollment, authentication, and authorization, with an emphasis on interoperability, continuous access decisions, and Zero Trust for reasoning workloads.

### Source excerpt

NIST published a concept paper stating, "Organizations need to understand how identity principles such as identification, authentication, and authorization can apply to agents to provide appropriate protections while enabling business value." This post, and the series that follows, is 1Password's response to NIST's call for input on how those principles should apply to agents. At 1Password, we approach security through simplicity. We are developing an agent identity architecture to simplify and enhance the security of AI agents, ensuring interoperability with existing systems. Our approach is built in collaboration with customers, partners, and the standards community. As part of this work, we recently responded to NIST's AI agent authorization paper. Our view is that agent identity is not a single problem. It is a set of challenges spanning identification, attestation, enrollment, authentication, and authorization for machine workloads with reasoning capabilities. The ability to reason is what sets AI agents apart from traditional machine workloads. This post is the first in a multi-part series on why agent-driven systems require us to rethink identity to enable continuous authentication and authorization for reasoning agents, and how that shapes both our response to NIST and our own approach to agent identity. The agent identity problem Where traditional machine workloads have a "set and forget" policy, the nature of reasoning workloads means a static policy can become out of date as the agent interprets and takes its next action. Agents that automatically deploy software are a great example of this escalation chain. A deployment agent begins with access to QA resources, but its access needs evolve when tests pass and may then require access to production services. The principle of Zero Trust maintains that you should provide only the minimum access needed, but infinitely evolving logic makes it difficult to apply the correct access for the lifetime of an agent pr

## Meet Keycloak at FOSDEM on Jan 30/Feb 01!

DevFeed: [Meet Keycloak at FOSDEM on Jan 30/Feb 01!](<https://devfeed.tech/articles/meet-keycloak-at-fosdem-on-jan-30-feb-01-31751.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2026/01/preparing-fosdem-2026>)

Author: Alexander Schwartz

Published: 2026-01-26T00:00:00Z

Content type: news

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [FOSDEM](<https://devfeed.tech/topics/fosdem.md>), [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>)

Tags: [2026](<https://devfeed.tech/tags/2026.md>), [active-directory](<https://devfeed.tech/tags/active-directory.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [fosdem](<https://devfeed.tech/tags/fosdem.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [oauth](<https://devfeed.tech/tags/oauth.md>), [oauth-2-0](<https://devfeed.tech/tags/oauth-2-0.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [openid](<https://devfeed.tech/tags/openid.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [saml](<https://devfeed.tech/tags/saml.md>), [sso](<https://devfeed.tech/tags/sso.md>)

### AI overview

Keycloak will participate in FOSDEM 2026 in Brussels through a co-hosted Sovereign Identity stand and related identity and access management talks. The article provides event, stand, and schedule details.

### Source excerpt

FOSDEM is a free event for software developers to meet, share ideas and collaborate. Every year, thousands of developers of free and open source software from all over the world gather at the event. Several Keycloak related talks happen at FOSDEM in Brussels on January 31st and February 1st, and meet us and help out at the stand. To get the latest updates, subscribe to our discussion on GitHub. Meet the community at the Sovereign Identity stand On Saturday, January 31st 2026, the Keycloak project will co-host the "Sovereign Identity for server, desktop, and a cloud" stand together with the FreeIPA, SSSD and OpenWallet project. We'll be open from 1000 in the morning until around 1800 in the early evening. We will be at K building on level 1 in group C. Visit this stand to interact with the teams of several popular solutions in this space. Keycloak Extensible self-hosted Single-Sign-On for your applications. Supporting Passkeys, OpenID Connect, OAuth 2.0, SAML 2.0 and Kerberos. Integrating with other Identity Providers through brokerage via SAML or OpenID Connect, or via LDAP. FreeIPA Manage Linux users and client hosts in your realm from one central location, define Kerberos authentication and authorization policies for your identities, create mutual trust with other Identity Management systems. Issue certificates to your users and services. SSSD Open Source Client for Enterprise Identity Management. Enroll your Linux machine into an Active Directory, FreeIPA or LDAP domain. Use remote identities, policies and various authentication and authorization mechanisms to access your computer. OpenWallet Foundation We drive global adoption of open, secure and interoperable digital wallet solutions. We set best practices for digital wallet technology through collaboration on standards-based OSS components that issuers, wallet providers and relying parties can use to bootstrap implementations that preserve user choice, security and privacy. Talks about Keycloak and related top

## The Agentic Identity Journey: Building IAM for Autonomous Actors

DevFeed: [The Agentic Identity Journey: Building IAM for Autonomous Actors](<https://devfeed.tech/articles/the-agentic-identity-journey-29991.md>)

Original publisher: [Read original article](<https://engineering.indeedblog.com/blog/2025/06/the-agentic-identity-journey/>)

Author: Ken Adler

Published: 2025-06-03T21:53:51Z

Content type: opinion

Language: en

Sources: [Indeed](<https://devfeed.tech/sources/indeed.md>)

Topics: [IAM](<https://devfeed.tech/topics/iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Web](<https://devfeed.tech/topics/web.md>)

Tags: [agentic-ai](<https://devfeed.tech/tags/agentic-ai.md>), [agentic-iam](<https://devfeed.tech/tags/agentic-iam.md>), [architecture](<https://devfeed.tech/tags/architecture.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [authorization](<https://devfeed.tech/tags/authorization.md>), [autonomous](<https://devfeed.tech/tags/autonomous.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [privacy](<https://devfeed.tech/tags/privacy.md>), [resilience](<https://devfeed.tech/tags/resilience.md>), [security](<https://devfeed.tech/tags/security.md>), [software](<https://devfeed.tech/tags/software.md>)

### AI overview

This commentary introduces Indeed's perspective on building an Agentic IAM architecture for a future in which autonomous and potentially malicious software agents interact with its platform. It emphasizes precise authorization, trustworthy delegation, verifiable auditing, speed, resilience, and privacy, and presents the post as the first entry in a series.

### Source excerpt

Every so often, the web changes in a way that rewires how we live. In the early days, Web 1.0 let us read. It was a window into information -- static pages, digital brochures, news sites. We were spectators peering into a new world. Then came Web 2.0, and we learned to write. We didn't [...]

## OpenTalk Keycloak case study published

DevFeed: [OpenTalk Keycloak case study published](<https://devfeed.tech/articles/opentalk-keycloak-case-study-published-31709.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2025/05/opentalk-case-study>)

Author: Alexander Schwartz

Published: 2025-05-15T00:00:00Z

Content type: release

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [case-study](<https://devfeed.tech/tags/case-study.md>), [cncf](<https://devfeed.tech/tags/cncf.md>), [data-privacy](<https://devfeed.tech/tags/data-privacy.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [regulatory](<https://devfeed.tech/tags/regulatory.md>), [saml](<https://devfeed.tech/tags/saml.md>), [sso](<https://devfeed.tech/tags/sso.md>)

### AI overview

This announcement reports that OpenTalk, a videoconferencing solution, uses Keycloak as a secure and scalable Identity and Access Management solution across its services. It highlights OpenTalk's goals around security, user sovereignty, data privacy, and regulatory requirements, and announces the first CNCF case study published for the Keycloak project.

### Source excerpt

OpenTalk, a videoconferencing solution, needed a secure and scalable Identity and Access Management (IAM) solution to authenticate users across various services. Keycloak meets OpenTalk's goals for security, user sovereignty, data privacy and regulatory requirements, so they use it in their architecture. Read more on their challenges and the solution in the first CNCF case study published for the Keycloak project! We are now starting to collect all case studies at our case studies page. If you want to share your case study with the Keycloak community, contact me to sort out the details.

## Exploring DORA Compliance in Practice: Key Takeaways from Our Recent Webinar

DevFeed: [Exploring DORA Compliance in Practice: Key Takeaways from Our Recent Webinar](<https://devfeed.tech/articles/exploring-dora-compliance-in-practice-key-takeaways-from-our-recent-webinar-29642.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/exploring-dora-compliance-in-practice/>)

Author: sami@goteleport.com (Sami Ali)

Published: 2025-05-07T00:00:00Z

Content type: article

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [IAM](<https://devfeed.tech/topics/iam.md>), [Access Control](<https://devfeed.tech/topics/access-control.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [Security](<https://devfeed.tech/topics/security.md>), [Resilience](<https://devfeed.tech/topics/resilience.md>), [Monitoring](<https://devfeed.tech/topics/monitoring.md>)

Tags: [access-control](<https://devfeed.tech/tags/access-control.md>), [auditability](<https://devfeed.tech/tags/auditability.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [emea](<https://devfeed.tech/tags/emea.md>), [eu](<https://devfeed.tech/tags/eu.md>), [financial](<https://devfeed.tech/tags/financial.md>), [governance](<https://devfeed.tech/tags/governance.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [monitoring](<https://devfeed.tech/tags/monitoring.md>), [security](<https://devfeed.tech/tags/security.md>), [webinar](<https://devfeed.tech/tags/webinar.md>)

### AI overview

This webinar recap explains how the EU's Digital Operational Resilience Act (DORA) affects access control, identity governance, auditability, and third-party risk for financial institutions and service providers. It describes how Teleport can support practical controls such as role-based access and scoped infrastructure access.

### Source excerpt

Learn how financial institutions can achieve DORA compliance through practical IAM solutions, with insights from Teleport and Falx on implementing effective controls.

## Announcing Keycloak's Identity Summit: KEYCONF25

DevFeed: [Announcing Keycloak's Identity Summit: KEYCONF25](<https://devfeed.tech/articles/announcing-keycloak-s-identity-summit-keyconf25-31701.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2025/04/keyconf25-amsterdam-announce>)

Author: Nathalia Pinesi

Published: 2025-04-28T00:00:00Z

Content type: news

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [OAuth 2.0](<https://devfeed.tech/topics/oauth2.md>), [OpenID connect (OIDC)](<https://devfeed.tech/topics/oidc.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [event](<https://devfeed.tech/tags/event.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity](<https://devfeed.tech/tags/identity.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [oauth2](<https://devfeed.tech/tags/oauth2.md>), [oidc](<https://devfeed.tech/tags/oidc.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [saml](<https://devfeed.tech/tags/saml.md>), [sso](<https://devfeed.tech/tags/sso.md>)

### AI overview

Keycloak announces KEYCONF25, its Identity Summit, taking place in Amsterdam on August 28, 2025. The event will feature sessions on Keycloak, identity and access management, OAuth2, OIDC, security, and identity standards, with networking opportunities and calls for sponsors and speakers.

### Source excerpt

KeyConf24 was a fantastic success, bringing together identity and access management professionals, developers, and community members from across Europe. The day was packed with insightful talks, deep dives into Keycloak, and incredible conversations between some of the brightest minds in IAM. Now, we're excited to take things even further. 📍 Introducing KEYCONF25 - taking place in Amsterdam on August 28th, 2025! This year's edition of the Keycloak Identity Summit promises more content, more connections, and even more opportunities to engage with the people shaping the future of identity and access management. What to expect at KEYCONF25 Inspiring Keynote Speakers Hear directly from thought leaders, core contributors, and experts working on the cutting edge of Keycloak and open identity standards. Connect with like-minded professionals From long-time contributors to those just starting their IAM journey, KEYCONF25 is the perfect place to meet others working with identity, OAuth2, OIDC, and more. Networking lunch Our extended lunch break is designed to help you meet fellow attendees, swap ideas, and build meaningful professional connections in a relaxed setting. Business drinks Stick around after the last session for informal networking over drinks. Want to sponsor this year's Business Drink? Get in touch with us--we'd love to partner with you! Expert sessions and real-world use cases Gain practical insights into Keycloak implementation, security improvements, OAuth2 best practices, and evolving identity standards. Topics and speakers to be announced soon! Save the date and join us! Whether you're a developer, architect, security specialist, or product owner, KEYCONF25 is your opportunity to gain knowledge, grow your network, and contribute to the future of the Keycloak community. 📅 August 28th, 2025 📍 Amsterdam, Netherlands Tickets are now available at keyconf.dev - secure your spot early! Want to get involved? We're actively seeking sponsors and speakers for KEYCONF2

## Keycloak at KubeCon EU 2025

DevFeed: [Keycloak at KubeCon EU 2025](<https://devfeed.tech/articles/keycloak-at-kubecon-eu-2025-31700.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2025/04/keycloak-kubecon25-eu-recap>)

Author: Ryan Emerson

Published: 2025-04-16T00:00:00Z

Content type: article

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [observability](<https://devfeed.tech/topics/observability.md>), [openid](<https://devfeed.tech/topics/openid.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [cncf](<https://devfeed.tech/tags/cncf.md>), [community](<https://devfeed.tech/tags/community.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [kubecon](<https://devfeed.tech/tags/kubecon.md>), [kubecon-eu](<https://devfeed.tech/tags/kubecon-eu.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [observability](<https://devfeed.tech/tags/observability.md>), [openid](<https://devfeed.tech/tags/openid.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [saml](<https://devfeed.tech/tags/saml.md>), [sso](<https://devfeed.tech/tags/sso.md>)

### AI overview

Keycloak recaps its presence at KubeCon EU 2025 in London, including its project pavilion, conversations with users, and a talk on the evolution of OpenID Connect and observability in Keycloak. The post also invites user feedback and highlights upcoming Keycloak community events in Japan.

### Source excerpt

Keycloak had a very active presence at this year's KubeCon EU in London. This blog presents a few of the highlights as well as ways you can contribute to Keycloak's CNCF journey. Project Pavilion Keycloak hosted a project pavilion stand during Wednesday, Thursday and Friday afternoon slots. Attending the booth were Keycloak contributors Takashi Norimatsu and Yoshiyuki Tabata from Hitachi, alongside Martin Bartos and Ryan Emerson from Red Hat. During these sessions, we had the opportunity to connect with both existing and prospective Keycloak users to talk all things related to Identity and Access Management. Keycloak stickers were as popular as ever, with both the CNCF sticker wall and our own stash completely emptied! It was fantastic to hear firsthand feedback - what's working well and where there's room for improvement. Insights like these are invaluable as we continue to grow the project and shape the future roadmap. If you weren't able to stop by the pavilion, we'd still love to hear from you, please feel free to share your thoughts via the online feedback form. Keycloak Talk Takashi Norimatsu and Ryan Emerson presented a talk titled "Evolving OpenID Connect and Observability in Keycloak". Watch the recording to hear about how OpenID Connect and observability have evolved over the past year in the Keycloak project. A video of the talk is linked below. Thank you to all who attended and asked questions, there were good follow-up conversations that continued well after our time was up. Keycloak Survey Are you a Keycloak user who is deploying in production or just considering starting with Keycloak? We would love to hear more from you about your success stories, what is crucial to your deployments and what can be done better. Please fill out the online Keycloak Survey so we can better understand your use cases. Your story maybe a candidate for a CNCF Case Study. If you would like to share your success story with our community, answer yes to the "Would you be intere

## Managing Machine Identities to Reduce Anonymous Computing Risks

DevFeed: [Managing Machine Identities to Reduce Anonymous Computing Risks](<https://devfeed.tech/articles/it-s-finally-time-to-embrace-trusted-computing-29942.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/time-to-embrace-trusted-computing/>)

Author: jason@intellyx.com (Jason Bloomberg)

Published: 2025-02-25T00:00:00Z

Content type: opinion

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Security](<https://devfeed.tech/topics/security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Network](<https://devfeed.tech/topics/network.md>), [GitHub Actions](<https://devfeed.tech/topics/github-actions.md>)

Tags: [ci-cd-pipeline](<https://devfeed.tech/tags/ci-cd-pipeline.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [network](<https://devfeed.tech/tags/network.md>), [security](<https://devfeed.tech/tags/security.md>), [toolchain](<https://devfeed.tech/tags/toolchain.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

The article argues that anonymous computing occurs when infrastructure assets use fictitious or shared identities without identifying the human making a request. It presents machine-identity management as a way to reduce security vulnerabilities without obstructing necessary work.

### Source excerpt

It's Finally Time to Embrace Trusted Computing Does your corporate network treat users on VPNs as trusted regardless of who they are? Does your web server connect to its database as a fictitious user with a password in a config file somewhere? Or perhaps the most frightening scenario: did your platform engineer log in as root to configure your CI/CD pipeline toolchain?

## Meet Keycloak at FOSDEM 2025 in February!

DevFeed: [Meet Keycloak at FOSDEM 2025 in February!](<https://devfeed.tech/articles/meet-keycloak-at-fosdem-2025-in-february-31681.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2025/01/keycloak-at-fosdem-2025>)

Author: Alexander Schwartz

Published: 2025-01-08T00:00:00Z

Content type: news

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [FOSDEM](<https://devfeed.tech/topics/fosdem.md>), [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Maintainers](<https://devfeed.tech/topics/maintainers.md>)

Tags: [2025](<https://devfeed.tech/tags/2025.md>), [community](<https://devfeed.tech/tags/community.md>), [conferences](<https://devfeed.tech/tags/conferences.md>), [cryptography](<https://devfeed.tech/tags/cryptography.md>), [fosdem](<https://devfeed.tech/tags/fosdem.md>), [hardening](<https://devfeed.tech/tags/hardening.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [linux-foundation](<https://devfeed.tech/tags/linux-foundation.md>), [maintainers](<https://devfeed.tech/tags/maintainers.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [saml](<https://devfeed.tech/tags/saml.md>), [sso](<https://devfeed.tech/tags/sso.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>)

### AI overview

This article announces Keycloak's presence at FOSDEM 2025, including talks from the Keycloak community and team, a maintainer meet-and-greet at the CNCF stand, a Linux Foundation side event, and relevant dev rooms.

### Source excerpt

FOSDEM is a free event for software developers to meet, share ideas and collaborate. Every year, thousands of developers of free and open source software from all over the world gather at the event. Those staying home will be able to watch the live stream of the talks and ask questions online. Members of the Keycloak project will be on-site like last year, and there will be talks from both the Keycloak community and the Keycloak team. See below for places to meet other Keycloak enthusiasts, and which talks will relate to Keycloak. Meet-and-greet While FOSDEM is organized around talks, it is also a great place to meet people in real life that you previously knew only from online, and make new friends. With thousands of people at the event, it is good to have a place for a meet-and-greet. Cloud Native Computing Foundation (CNCF) Stand A lot of organizations and projects will have a stand at FOSDEM. With Keycloak being a CNCF project, we will be sharing a time slot at their stand. You'll be able to meet Keycloak maintainers at the CNCF stand on Saturday, February 1st, from 16:00-17:30 h. As our time slot might change, please come back here on the day of the event and double-check! Linux Foundation side event & drinks! (Sat Feb 01, 18:00-20:00 h) As part of the events happening around FOSDEM, also called FOSDEM Fringe, the Linux foundation invites you for a drink. A free registration is required to join. UPDATE: It is currently fully booked and there is a waiting list. FOSDEM is all about devrooms! FOSDEM is a big event divided into smaller, single-track conferences with their own call for papers and organizers. Here a short list of those dev rooms that might be of interest for you if you are into Keycloak: Identity and Access Management Devroom (Sun Feb 02, 09:00-17:00 h) Identity and Access Management Devroom is related to operating systems' identity and access management in the free software and open source world. Expect talks about identity federation, integrating i

## Recap Keycloak at KubeCon NA 2024

DevFeed: [Recap Keycloak at KubeCon NA 2024](<https://devfeed.tech/articles/recap-keycloak-at-kubecon-na-2024-31676.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2024/12/keycloak-at-kubecon-na-2024-recap>)

Author: Ryan Emerson

Published: 2024-12-04T00:00:00Z

Content type: news

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Development](<https://devfeed.tech/topics/development.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [cncf](<https://devfeed.tech/tags/cncf.md>), [community](<https://devfeed.tech/tags/community.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [kubecon](<https://devfeed.tech/tags/kubecon.md>), [kubecon-na](<https://devfeed.tech/tags/kubecon-na.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [production](<https://devfeed.tech/tags/production.md>), [recap](<https://devfeed.tech/tags/recap.md>), [saml](<https://devfeed.tech/tags/saml.md>), [sso](<https://devfeed.tech/tags/sso.md>), [survey](<https://devfeed.tech/tags/survey.md>)

### AI overview

A recap of Keycloak's presence at KubeCon North America 2024, covering its project pavilion, discussions with users, a talk on highly available identity and access management, and invitations to participate in surveys and the project's CNCF journey.

### Source excerpt

Keycloak had a very active presence at this year's KubeCon NA in Salt Lake City, Utah. This blog presents a few of the highlights as well as ways you can contribute to Keycloak's CNCF journey. Project Pavilion Keycloak hosted a project pavilion stand during Wednesday, Thursday and Friday afternoon slots. Attending the booth were Keycloak contributors Yoshiyuki Tabata from Hitachi and Ryan Emerson, Martin Bartos and Kamesh Akella from Red Hat. During these sessions, we discussed all things Keycloak with existing and prospective users, as well as provided the much requested Keycloak stickers plus additional swag for particularly enthusiastic users. It was great to hear war stories from the trenches with regard to both the good and bad of Keycloak. This feedback is essential for us to continue to evolve the project and plan the future roadmap. A special thanks to all of those who filled out our survey forms, we really appreciate your time. If you were unable to attend the pavilion, please consider filling out the online version of the form. Keycloak Talk Ryan Emerson and Kamesh Akella presented a talk titled "Running a Highly Available Identity and Access Management with Keycloak". Watch the recording to hear about the recent developments in Keycloak's HA story, including an overview of the architecture recommended in the Keycloak guides, the lessons learned during the development of said guides and the CNCF technologies used as part of our stack. A video of the talk is linked below. Thank you to all who attended and asked questions, there were good follow-up conservations that continued well after our time was up. Keycloak Survey Are you a Keycloak user who is deploying in production or just considering starting with Keycloak? We would love to hear more from you about your success stories, what is crucial to your deployments and what can be done better. Please fill out the online Keycloak Survey, so we can better understand your use cases. Your story maybe a candidate

## Meet Keycloak at KubeCon Salt Lake City, Utah in Nov 2024

DevFeed: [Meet Keycloak at KubeCon Salt Lake City, Utah in Nov 2024](<https://devfeed.tech/articles/meet-keycloak-at-kubecon-salt-lake-city-utah-in-nov-2024-31667.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2024/10/keycloak-kubeconf24-na-slc-announcement>)

Author: Kamesh Akella

Published: 2024-10-10T00:00:00Z

Content type: news

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Maintainers](<https://devfeed.tech/topics/maintainers.md>)

Tags: [cloud-native](<https://devfeed.tech/tags/cloud-native.md>), [community](<https://devfeed.tech/tags/community.md>), [conference](<https://devfeed.tech/tags/conference.md>), [contributors](<https://devfeed.tech/tags/contributors.md>), [events](<https://devfeed.tech/tags/events.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [kubecon](<https://devfeed.tech/tags/kubecon.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [maintainers](<https://devfeed.tech/tags/maintainers.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [saml](<https://devfeed.tech/tags/saml.md>), [sso](<https://devfeed.tech/tags/sso.md>)

### AI overview

Keycloak announces its presence at KubeCon Salt Lake City, Utah, from November 12-15, 2024, with a Project Pavilion kiosk, community activities, and a session on highly available Keycloak in a multi-site environment.

### Source excerpt

We are thrilled to announce that Keycloak will be at KubeCon Salt Lake City, Utah in Nov 2024. There are several Keycloak specific sessions lined up during this conference, and we will be hosting a Kiosk at the Project Pavilion at KubeCon. What is KubeCon? Keycloak's presence in the previous KubeCons was a huge success, and we continue to have a lot of fun interacting with Keycloak enthusiasts, users, newcomers alike. KubeCon is a fast-growing Cloud Native tech conference expected to have up to 8,000 developers, architects, and technical leaders onsite as well as thousands of participants virtually. KubeCon Salt Lake City will be held from Nov. 12th, 2024 through Nov. 15th, 2024, with many of the co-located events happening on Tuesday, Nov 12th, 2024. Keycloak community Meet & Greet at the Project Pavilion Yoshiyuki Tabata from Hitachi, Ryan Emerson, Martin Bartos, Kamesh Akella from Red Hat and other contributors will be at the Keycloak kiosk at the Project Pavilion. This is a great chance to meet people who use Keycloak, contribute to Keycloak, take our survey about new Keycloak features, and get some cool swag! Keycloak Kiosk opening hours: Wednesday, November 13: 3:15pm-8:00pm Thursday, November 14: 1:45pm-5:00pm Friday, November 15: 12:30pm-2:30pm OpenShift Commons Gathering The OpenShift Commons Gathering happens on Tuesday (Nov. 12th, 2024) and builds connections and collaboration across OpenShift communities, projects and stakeholders. Some maintainers from the Keycloak development team will be here during the afternoon. This gives a chance for more community Keycloak maintainers, contributors, and users to meet and share their ideas or just hang out. Access to the OpenShift Commons event is free and does not require a paid KubeCon ticket, still you'll need to register on their website in advance. Keycloak specific events at KubeCon Below is the Keycloak specific event that the attendees both in-person and virtually can plan to attend and learn more about a

## Announcing Keycloak's Identity Summit: KeyConf24

DevFeed: [Announcing Keycloak's Identity Summit: KeyConf24](<https://devfeed.tech/articles/announcing-keycloak-s-identity-summit-keyconf24-31647.md>)

Original publisher: [Read original article](<https://www.keycloak.org/2024/06/keyconf24-invitation>)

Author: Nathalia Pinesi

Published: 2024-06-10T00:00:00Z

Content type: release

Language: en

Sources: [Keycloak Blog](<https://devfeed.tech/sources/keycloak-blog.md>)

Topics: [Keycloak](<https://devfeed.tech/topics/keycloak.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [OpenID connect (OIDC)](<https://devfeed.tech/topics/oidc.md>), [Security](<https://devfeed.tech/topics/security.md>), [Maintainers](<https://devfeed.tech/topics/maintainers.md>)

Tags: [announce](<https://devfeed.tech/tags/announce.md>), [developers](<https://devfeed.tech/tags/developers.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [idm](<https://devfeed.tech/tags/idm.md>), [kerberos](<https://devfeed.tech/tags/kerberos.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [maintainers](<https://devfeed.tech/tags/maintainers.md>), [oidc](<https://devfeed.tech/tags/oidc.md>), [openid-connect](<https://devfeed.tech/tags/openid-connect.md>), [saml](<https://devfeed.tech/tags/saml.md>), [security](<https://devfeed.tech/tags/security.md>), [speakers](<https://devfeed.tech/tags/speakers.md>), [sso](<https://devfeed.tech/tags/sso.md>), [summit](<https://devfeed.tech/tags/summit.md>), [support](<https://devfeed.tech/tags/support.md>)

### AI overview

Keycloak announces KeyConf24, its 2024 Identity Summit. The event will cover digital identity wallets, verifiable credentials, OIDC FAPI2, and new grant type SPI and token exchange endpoints, with opportunities for networking and community participation.

### Source excerpt

KeyConf23 was an incredible success, bringing together nearly 60 passionate members of the Keycloak community in London. The energy and collaboration were palpable as attendees delved into the latest developments in identity and access management. We witnessed thought-provoking discussions, learned from industry experts, and forged valuable connections. Building on that momentum, we're thrilled to announce KeyConf24, our 2024 Keycloak Identity Summit! This year's event promises to be even bigger and better, with a program packed full of relevant, cutting-edge topics. What to Expect at KeyConf24 European Digital Identity Wallet: Deep dives into the European Union's ambitious initiative and its impact on identity management. Verifiable Credentials: Explore the exciting potential of decentralized identity verification and the role of Keycloak. State of OIDC FAPI2: Get the latest updates on OpenID Connect's Financial-grade API (FAPI) security profile. New Grant Type SPI & Token Exchange Endpoints: Technical sessions on Keycloak's expanded capabilities and how to leverage them. Many more to be announced... And of course, there will be ample opportunities for networking, knowledge sharing, and connecting with the vibrant Keycloak community and Keycloak maintainers. Save the Date and Join Us! We invite all developers, architects, security professionals, and anyone interested in identity and access management to join us for KeyConf24. We'll be announcing more details soon, so stay tuned for more information. In the meantime, mark your calendars and prepare for an unforgettable experience! Want to get involved? You can register to attend to the event here. We are actively seeking speakers and sponsors for KeyConf24. If you'd like to share your expertise or help support this community-driven event, please submit your ideas here. If you have any further questions reach out to us on marketing@adorsys.com Let's continue to shape the future of identity together!

## Audited least privilege

DevFeed: [Audited least privilege](<https://devfeed.tech/articles/audited-least-privilege-12893.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/audited-least-privilege>)

Published: 2024-05-13T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Access Control](<https://devfeed.tech/topics/access-control.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>), [SIEM, Security, Observability](<https://devfeed.tech/topics/siem-security-observability.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>)

Tags: [access-control](<https://devfeed.tech/tags/access-control.md>), [audit](<https://devfeed.tech/tags/audit.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [defense-in-depth](<https://devfeed.tech/tags/defense-in-depth.md>), [ephemerality](<https://devfeed.tech/tags/ephemerality.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [identity-management](<https://devfeed.tech/tags/identity-management.md>), [least-privilege](<https://devfeed.tech/tags/least-privilege.md>), [logs](<https://devfeed.tech/tags/logs.md>), [minimalism](<https://devfeed.tech/tags/minimalism.md>), [security](<https://devfeed.tech/tags/security.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [software-supply-chain-security](<https://devfeed.tech/tags/software-supply-chain-security.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [trust](<https://devfeed.tech/tags/trust.md>)

### AI overview

The article presents audited least privilege as a cloud security model that complements fine-grained IAM grants with fine-grained IAM audit log policies. It emphasizes minimizing access by level, scope, and duration, then monitoring resource access to verify that only expected identities use provisioned resources.

### Source excerpt

Strengthen your software supply chain security with audited least privilege. Learn how Chainguard's approach minimizes risk and enhances trust.

## Auth setup with Neon, Keycloak and Koyeb

DevFeed: [Auth setup with Neon, Keycloak and Koyeb](<https://devfeed.tech/articles/auth-setup-with-neon-keycloak-and-koyeb-4992.md>)

Original publisher: [Read original article](<https://neon.com/blog/auth-setup-with-neon-keycloak-and-koyeb>)

Author: Evan Shortiss

Published: 2023-12-15T19:15:41Z

Content type: tutorial

Language: en

Sources: [Blog -- Neon Docs](<https://devfeed.tech/sources/blog-neon-docs.md>)

Topics: [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [Databases](<https://devfeed.tech/topics/databases.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [hosting](<https://devfeed.tech/topics/hosting.md>), [Docker](<https://devfeed.tech/topics/docker.md>), [podman](<https://devfeed.tech/topics/podman.md>), [OAuth 2.0](<https://devfeed.tech/topics/oauth2.md>), [saml](<https://devfeed.tech/topics/saml.md>)

Tags: [authentication](<https://devfeed.tech/tags/authentication.md>), [authorization](<https://devfeed.tech/tags/authorization.md>), [community](<https://devfeed.tech/tags/community.md>), [database](<https://devfeed.tech/tags/database.md>), [docker](<https://devfeed.tech/tags/docker.md>), [guide](<https://devfeed.tech/tags/guide.md>), [hosting](<https://devfeed.tech/tags/hosting.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [keycloak](<https://devfeed.tech/tags/keycloak.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [podman](<https://devfeed.tech/tags/podman.md>), [postgres](<https://devfeed.tech/tags/postgres.md>), [sso](<https://devfeed.tech/tags/sso.md>)

### AI overview

A practical guide to deploying Keycloak with Neon Postgres and Koyeb. It covers creating a dedicated database and user, configuring permissions, and deploying Keycloak with SSL certificates using Docker or Podman.

### Source excerpt

Keycloak is an open-source identity and access management solution that centralizes authentication and authorization management. It provides features such as single sign-on (SSO), two-factor authentication, social login, and user federation with LDAP or Active Directory user fede...

[Next page](<https://devfeed.tech/topics/identity-and-access-management.md?cursor=WyIyMDIzLTEyLTE1VDE5OjE1OjQxKzAwOjAwIiwgImM1NDEzNDY0LWFjZTctNDNlYy1iYjQxLWE5ZTM4YTJmOWI2YSJd>)