【发布时间】:2022-01-22 12:14:16
【问题描述】:
我想为 keycloak 激活双向 SSL。在 keycloak 管理指南 [https://www.keycloak.org/docs/latest/server_admin/#_enable-mtls-wildfly] 我发现,我已将以下内容添加到standalone.xml
<security-realms>
<security-realm name="ssl-realm">
<server-identities>
<ssl>
<keystore path="servercert.jks"
relative-to="jboss.server.config.dir"
keystore-password="servercert password"/>
</ssl>
</server-identities>
<authentication>
<truststore path="truststore.jks"
relative-to="jboss.server.config.dir"
keystore-password="truststore password"/>
</authentication>
</security-realm>
</security-realms>
但我不知道在哪里。 我尝试将其集成到subsystem=elytron 下的安全领域,但我得到了:
| > Message: WFLYCTL0377: Unexpected element
| > '{urn:wildfly:elytron:15.0}security-realm' encountered. Valid elements
| > are: 'custom-modifiable-realm, aggregate-realm, failover-realm,
| > ldap-realm, token-realm, filesystem-realm, custom-realm,
| > identity-realm, caching-realm, properties-realm, key-store-realm,
| > distributed-realm, jdbc-realm, jaas-realm'
【问题讨论】: