<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Successfully migrated the login to my Forgejo Git-Forge from an outdated installation of Authentik to a containerized Keycloak 26 with Passkey (WebAuthN) authentication 🥳]]></title><description><![CDATA[<p>Successfully migrated the login to my Forgejo Git-Forge from an outdated installation of Authentik to a containerized Keycloak 26 with Passkey (WebAuthN) authentication 🥳 </p><p>Getting the users from my FreeIPA LDAP via a secured Wireguard tunnel that only allows port 636 to the IPA replica server in my DMZ.</p><p>Works like a charm. Once the handful of users on my instance have linked their new Keycloak identity with their Forgejo account, I can disable the old OIDC with Authentik <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title="🙂" alt="🙂" /> </p><p><a href="https://burningboard.net/tags/keycloak" rel="tag">#<span>keycloak</span></a> <a href="https://burningboard.net/tags/oidc" rel="tag">#<span>oidc</span></a> <a href="https://burningboard.net/tags/authentik" rel="tag">#<span>authentik</span></a> <a href="https://burningboard.net/tags/forgejo" rel="tag">#<span>forgejo</span></a> <a href="https://burningboard.net/tags/linux" rel="tag">#<span>linux</span></a> <a href="https://burningboard.net/tags/devops" rel="tag">#<span>devops</span></a></p>

<div class="row mt-3"><div class="col-12 mt-3"><img class="img-thumbnail" src="https://media.burningboard.net/media_attachments/files/116/353/577/658/717/910/original/5105fcc2decf92f8.png" alt="Link Preview Image" /><img class="img-thumbnail" src="https://media.burningboard.net/media_attachments/files/116/353/579/115/795/109/original/6251bcaf4ea3d334.png" alt="Link Preview Image" /></div></div>]]></description><link>https://board.circlewithadot.net/topic/ecc1a53d-b9d1-4046-9a63-da933c0fe2e2/successfully-migrated-the-login-to-my-forgejo-git-forge-from-an-outdated-installation-of-authentik-to-a-containerized-keycloak-26-with-passkey-webauthn-authentication</link><generator>RSS for Node</generator><lastBuildDate>Mon, 06 Apr 2026 06:36:55 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/ecc1a53d-b9d1-4046-9a63-da933c0fe2e2.rss" rel="self" type="application/rss+xml"/><pubDate>Sun, 05 Apr 2026 18:50:45 GMT</pubDate><ttl>60</ttl></channel></rss>