Configure Keycloak Single Sign-On (SSO) with WordPress OAuth & OpenID Connect Single Sign-On (SSO) plugin. Enable secure login into WordPress using Keycloak as OAuth and OpenID Connect provider. Keycloak Single Sign-On (SSO) with WordPress allows your users to login to your WordPress and access the site by authenticating with their Keycloak identity provider. You can also configure plugin using different IDPs such as Azure AD, Office 365, and other custom providers. It supports advanced Single Sign-On (SSO) features such as user profile Attribute mapping, Role mapping, multi-tenant login etc. Here we will go through a guide to configure Keycloak Single Sign-On (SSO) with WordPress for user authentication. By the end of this guide, users should be able to perform secure login to WordPress and access the site with Keycloak SSO. To know more about other features we provide in WP OAuth Single Sign-On ( OAuth & OpenID Connect Client ) plugin, you can click here.
NOTE : Disabling Temporary will make user password permanent.
Step 1.1: Steps to fetch the Group mapper [Premium]
Note: -- If full path is on group path will be fetched else group name will be fetched.
Step 1.2: Steps to fetch the Role mapper [Premium]
You have successfully configured Keycloak as OAuth Provider for achieving Keycloak Single Sign-On (SSO) with WordPress for user authentication.
Note: -- The domain name would be the domain of the machine where your keycloak is running followed by the port number, for e.g if your keycloak is running on localhost then the domain would be http://localhost:8080.
You have successfully configured WordPress as OAuth Client for achieving user authentication with Keycloak Single Sign-On (SSO) login into your WordPress Site.
Note: -- The domain name would be the domain of the machine where your keycloak is running followed by the port number, for e.g if your keycloak is running on localhost then the domain would be http://localhost:8080.
You have successfully configured WordPress as OAuth Client for achieving user authentication with Keycloak Single Sign-On (SSO) login into your WordPress Site.
Sign in settings for WordPress 5.7 and before
Sign in settings for WordPress 5.8
Sign in settings for WordPress 5.9
Please refer the below table for configuring the scope & endpoints for Keycloak in the plugin.
Scope: | email profile openid |
Authorize Endpoint: | <keycloak domain>/auth/realms/{realm-name}/protocol/openid-connect/auth |
Access Token Endpoint: | <keycloak domain>/auth/realms/{realm-name}/protocol/openid-connect/token |
Get User Info Endpoint: | <keycloak domain>/auth/realms/{realm-name}/protocol/openid-connect/userinfo | Custom redirect URL after logout: [optional] | https://{domain-name}/auth/realms/{realm-name}/protocol/openid-connect/logout?redirect_uri=encodedRedirectUri |
In this Guide, you have successfully configured Keycloak Single Sign-On (SSO) by configuring Keycloak as OAuth Provider and WordPress as OAuth Client using our WP OAuth Single Sign-On ( OAuth / OpenID Connect Client ) plugin.This solution ensures that you are ready to roll out secure access to your WordPress site using Keycloak login credentials within minutes.
Mail us on oauthsupport@xecurify.com for quick guidance(via email/meeting) on your requirement and our team will help you to select the best suitable solution/plan as per your requirement.
.support-icon { display: block !important; } } .col-md-6 { width: 33% !important; }Need Help? We are right here!
Thanks for your inquiry.
If you dont hear from us within 24 hours, please feel free to send a follow up email to info@xecurify.com