Using Azure AD as Keycloak Identity Provider
Last updated
Was this helpful?
Last updated
Was this helpful?
You need Azure Admin permission to complete this integration.
Create a new App registration from portal.azure.com selecting support for Multiple organizations when asked.
Find App registration in search.
Click New registration.
Fill in details as shown below.
Give the application a name and write down Application (client) ID as it will be needed later.
Next, go to your App Registrations’ Certificates & secrets to create a New client secret. Copy the Value of the secret to somewhere at had as it is needed later in the configuration.
In Keycloak, create a new IdP by selecting Microsoft from the drop down
Populate Client ID (this is Application (client) ID in Azure) and Client Secret (this is Value from Azure) using values obtained in previous steps.
Finally copy Redirect URI from Keycloak and add Redirect ID UI link in Azure App.
Open up a new Incognito mode in a browser and use