Skip to main content

Securing Applications

Phase Two is an implementation of the OpenID Connect specification. That means, no custom libraries or code are required Your applications and services can be secured using any compliant OpenID Connect Relying Party library. There are lists maintained by the OpenID Foundation of client libraries.

Confused? We will also use this category as a place to provide language and framework specific guides to make securing your applications easier.

Guides

Framework how-tos are being consolidated into our Keycloak tutorials, which teach open-source Keycloak and work on any deployment — start with the Spring Boot resource server tutorial. The guides below are the Phase Two-specific setup.

Libraries

Also, here is an unofficial list of OpenID Connect libraries we've heard good things about. Please email us if you're a library author, and you'd like to see your library linked here, or if you've had success with a library not listed here.