Skip to content

[Feature] Keycloak migration via OpenTofu (Terraform) #692

@simonhir

Description

@simonhir

Relevant component

No response

Problem description (optional)

We currently use klg71/keycloakmigration in the dev stack to setup keycloak, which is not broadly used and there are some official alternatives.
Also it would be great to use the locally modified client config for the production clients ("bring you own client").
Some of the pain points to fix:

  • Different client behavior local and production
    The production configuration as code would also fix:
  • Unknown custom config

Desired solution

Use or test out an keycloak OpenTofu/Terraform CaC tool, which is also usable for production.
Side cases to test:

  • Rerun migration if keycloak was reset
  • What happens to manual changes (overwriten?)

Considered alternatives (optional)

No response

Additional context (optional)

No duplicate

  • I confirm that this issue is not a duplicate

Code of Conduct

  • I agree to follow this project's Code of Conduct

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

Status

Open

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions