Authorization layer in IDP

Nate Klingenstein ndk at
Wed Oct 27 07:53:57 UTC 2021

(or, obviously, just release appropriate attributes, if that's the issue, through the extremely flexible attribute filter, at which point the SP (should) reject access:

I'm not sure why you could not achieve either of these with Keycloak, but there they are.)

More information about the users mailing list