Keycloak Version Supported by MOSIP and Plans to Upgrade from Keycloak 16

Hello MOSIP team,
I have a few queries regarding Keycloak support in MOSIP:

  • What is the latest Keycloak version officially supported and tested with the current MOSIP release?
  • Are there plans or a roadmap to upgrade MOSIP to support a more recent Keycloak version due to security vulnerability in Keycloak 16?
  • And which version is currently recommended for production?

Best Regards,
Harshal

Hi team,
Can someone please look into my earlier query.

Best Regards,
Harshal

Hi Team,
Can someone assist me with the query.

Best Regards,
Harshal

Hello Harsh we are using a custom version of keycloak, we have plans for keycloak hardening in our security roadma

mosip/keycloak --version “7.1.18”
from infra

Thanks for the response. You mentioned plans for Keycloak hardening. Could you please share hardening guide if available?

Best Regards,
Harshal

Hi Team,
Can someone assist me with the above query.

Best Regards,
Harshal

Hi Team,
Can someone help me with the above query.

Best Regards,
Harshal

Hi @Harsh,

Apologies for the delayed response, and thank you for your patience.

We are currently using a custom version of Keycloak 7.1.18 with MOSIP. Please note that Keycloak is an external service and is not maintained by the MOSIP team.

Bitnami maintained this particular distribution. However, Bitnami has discontinued support for several legacy container images, and the older Keycloak images are no longer actively maintained. You can refer to the following links for more details:

Given this situation, we recommend carefully evaluating its suitability, especially for production deployments. If Keycloak is required for production use, it is advisable to use an officially supported enterprise distribution or the latest supported release.

Please feel free to reach out if you need any further clarification from our side.

Best regards,
Praful Rakhade
Team MOSIP

This topic was automatically closed 10 days after the last reply. New replies are no longer allowed.