eupolicy.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
This Mastodon server is a friendly and respectful discussion space for people working in areas related to EU policy. When you request to create an account, please tell us something about you.

Server stats:

245
active users

#singlesignon

0 posts0 participants0 posts today
LavX News<p>Optimizing Multi-Step Login Forms for Seamless Password Manager Integration</p><p>As multi-step login forms become the norm, they pose challenges for password managers. This article delves into best practices for developers to enhance user experience and accessibility by ensuring c...</p><p><a href="https://news.lavx.hu/article/optimizing-multi-step-login-forms-for-seamless-password-manager-integration" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.lavx.hu/article/optimizin</span><span class="invisible">g-multi-step-login-forms-for-seamless-password-manager-integration</span></a></p><p><a href="https://mastodon.cloud/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.cloud/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://mastodon.cloud/tags/WebDevelopment" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebDevelopment</span></a> <a href="https://mastodon.cloud/tags/PasswordManager" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PasswordManager</span></a> <a href="https://mastodon.cloud/tags/SingleSignOn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SingleSignOn</span></a></p>
Silke Meyer<p>Der Mitschnitt und die Folien von meinem Vortrag "Keycloak - FAQ zu Ausfallsicherheit und Absicherung" bei den <a href="https://univention.social/tags/clt2025" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>clt2025</span></a> sind jetzt online: <a href="https://chemnitzer.linux-tage.de/2025/de/programm/beitrag/185" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">chemnitzer.linux-tage.de/2025/</span><span class="invisible">de/programm/beitrag/185</span></a></p><p><a href="https://univention.social/tags/Keycloak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Keycloak</span></a> <a href="https://univention.social/tags/singlesignon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>singlesignon</span></a> <a href="https://univention.social/tags/mfa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mfa</span></a> <a href="https://univention.social/tags/2fa" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2fa</span></a> <a href="https://univention.social/tags/freesoftware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>freesoftware</span></a> <a href="https://univention.social/tags/freiesoftware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>freiesoftware</span></a></p>
Silke Meyer<p>Die Chemnitzer Linuxtage sind wie immer großartig! Vielen Dank für Euer Interesse am Keycloak-Vortrag und für die vielen guten Fragen und Ergänzungen! </p><p>Foto: Corinna Hofmeister (Lieben Dank!)</p><p><a href="https://univention.social/tags/clt2025" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>clt2025</span></a> <a href="https://univention.social/tags/Keycloak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Keycloak</span></a> <a href="https://univention.social/tags/singlesignon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>singlesignon</span></a></p>
Silke Meyer<p>Ein kurzer Werbe-Einschub, wenn Ihr gestattet: Hab gerade gesehen, dass in "meiner" Keycloak-Schulung am 25.3. noch ein einziger Platz frei ist. Die ganztägige Schulung richtet sich an Admin*s, die den von <span class="h-card" translate="no"><a href="https://univention.social/@univention" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>univention</span></a></span> ausgelieferten Keycloak in Verbindung mit UCS einsetzen. Falls noch jemand mag, sind hier die Details: <a href="https://www.univention.de/training/keycloak/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">univention.de/training/keycloa</span><span class="invisible">k/</span></a></p><p><a href="https://univention.social/tags/Keycloak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Keycloak</span></a> <a href="https://univention.social/tags/singlesignon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>singlesignon</span></a> <a href="https://univention.social/tags/training" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>training</span></a> <a href="https://univention.social/tags/schulung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>schulung</span></a> <a href="https://univention.social/tags/univention" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>univention</span></a></p>
Jupiter Rowland@<a href="https://io.waxandleather.com/@alisynthesis" rel="nofollow noopener noreferrer" target="_blank">Alison Wilder</a> Because if you want full-blown user rights and all the same features as a local user on <em>all</em> over 30,000 Fediverse instances, you need a local user account on each one of them.<br><br>This means two things:<br><ul><li>If you come over to the Fediverse for the first time, and you register your first account on Mastodon, you automatically also register an account on 30,000+ more instances.</li><li>If you decide to host your own instance of whatever, and you spin it up for the first time, your instance immediately creates tens of millions of user accounts. One for everyone who has ever joined the Fediverse. Because anyone may decide to come over to your instance and use it, just like so.</li></ul><br>For one, this is utter overkill.<br><br>Besides, this is technologically impossible. This would require <em>all Fediverse instances</em> to know <em>all other Fediverse instances</em>. With no exceptions. Like, if I start up my own (streams) instance for the first time, and half a second later, someone on the other side of the globe starts up a Gancio instance, they would immediately have to know each other. And all the other instances in the Fediverse.<br><br>And, of course, it would require a newly-launched instance to know <em>all Fediverse users</em>. Again, with no exception.<br><br>How and from which source are they supposed to know?<br><br>That said, there is a single sign-on system for the Fediverse. It's called <a href="https://magicsignon.org/page/openwebauth/home" rel="nofollow noopener noreferrer" target="_blank">OpenWebAuth</a>. It was created by @<a class="" href="https://fediversity.site/channel/mikedev" rel="nofollow noopener noreferrer" target="_blank">Mike Macgirvin 🖥️</a> (creator of Friendica and all its descendants) in the late 2010s already for now-defunct <a href="https://joinfediverse.wiki/The_Zotlabs_projects#Zap" rel="nofollow noopener noreferrer" target="_blank">Zap</a>, a fork (of a fork?) of <a href="https://joinfediverse.wiki/Hubzilla" rel="nofollow noopener noreferrer" target="_blank">Hubzilla</a> which, in turn, is a fork of the currently hyped Facebook alternative <a href="https://joinfediverse.wiki/Friendica" rel="nofollow noopener noreferrer" target="_blank">Friendica</a>. It was backported to Hubzilla in 2020. Everything that came after Zap, including the still existing <a href="https://joinfediverse.wiki/(streams)" rel="nofollow noopener noreferrer" target="_blank">streams repository</a>, got it, too.<br><br>However, first of all, OpenWebAuth is only fully implemented on Hubzilla, (streams) and Forte. Plus, it has client-side support on Friendica. This means that Hubzilla, (streams) and Forte recognise logins on all four, but Friendica doesn't recognise logins from anywhere.<br><br>As for Mastodon, OpenWebAuth implementation was actually developed to the point of an official merge request in Mastodon's GitHub repository. As far as I know, it was rejected. Mastodon won't implement OpenWebAuth, full stop.<br><br>Besides, it doesn't give you all the same power as a local user. You can't log into Friendica, go to a Hubzilla hub and create a wiki or a webpage or a CalDAV calendar, just like so.<br><br>OpenWebAuth is only for guest permissions. Because on Hubzilla, (streams) and Forte, permissions are everything.<br><br>For example, let's assume you have an account and a channel on (streams). Let's also assume that your (streams) channel and this Hubzilla channel of mine here are connected. Furthermore, let's assume that I've decided to only allow my own full connections to see my profile.<br><br>If you're logged out, and you go to my profile page, you see nothing.<br><br>But then you log in. And you come back to my profile page (provided your browser is configured so that the Hubzilla hub that I call home is allowed to create cookies). My home hub recognises your login on (streams). It identifies you as you, as one of my contacts. Thus, it identifies you as someone who is permitted to see my profile.<br><br>And all of a sudden, you see my profile.<br><br>That, for example, is what OpenWebAuth is for.<br><br>#<a class="" href="https://hub.netzgemeinde.eu/search?tag=Long" rel="nofollow noopener noreferrer" target="_blank">Long</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=LongPost" rel="nofollow noopener noreferrer" target="_blank">LongPost</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=CWLong" rel="nofollow noopener noreferrer" target="_blank">CWLong</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=CWLongPost" rel="nofollow noopener noreferrer" target="_blank">CWLongPost</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=FediMeta" rel="nofollow noopener noreferrer" target="_blank">FediMeta</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=FediverseMeta" rel="nofollow noopener noreferrer" target="_blank">FediverseMeta</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=CWFediMeta" rel="nofollow noopener noreferrer" target="_blank">CWFediMeta</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=CWFediverseMeta" rel="nofollow noopener noreferrer" target="_blank">CWFediverseMeta</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=Fediverse" rel="nofollow noopener noreferrer" target="_blank">Fediverse</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=Friendica" rel="nofollow noopener noreferrer" target="_blank">Friendica</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=Hubzilla" rel="nofollow noopener noreferrer" target="_blank">Hubzilla</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=Zap" rel="nofollow noopener noreferrer" target="_blank">Zap</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=Streams" rel="nofollow noopener noreferrer" target="_blank">Streams</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=%28streams%29" rel="nofollow noopener noreferrer" target="_blank">(streams)</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=Forte" rel="nofollow noopener noreferrer" target="_blank">Forte</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=SingleSignOn" rel="nofollow noopener noreferrer" target="_blank">SingleSignOn</a> #<a class="" href="https://hub.netzgemeinde.eu/search?tag=OpenWebAuth" rel="nofollow noopener noreferrer" target="_blank">OpenWebAuth</a>
rijo<p>ICYMI: New option to add WhatsApp to Meta’s accounts center <a href="https://ppc.land/new-option-to-add-whatsapp-to-metas-accounts-center/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ppc.land/new-option-to-add-wha</span><span class="invisible">tsapp-to-metas-accounts-center/</span></a> <a href="https://frankfurt.social/tags/WhatsApp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WhatsApp</span></a> <a href="https://frankfurt.social/tags/Meta" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Meta</span></a> <a href="https://frankfurt.social/tags/SocialMedia" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SocialMedia</span></a> <a href="https://frankfurt.social/tags/CrossPosting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CrossPosting</span></a> <a href="https://frankfurt.social/tags/SingleSignOn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SingleSignOn</span></a></p>
PPC Land<p>ICYMI: New option to add WhatsApp to Meta’s accounts center: Meta introduces a new option to link WhatsApp to its accounts center, enabling cross-posting and single sign-on. <a href="https://ppc.land/new-option-to-add-whatsapp-to-metas-accounts-center/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ppc.land/new-option-to-add-wha</span><span class="invisible">tsapp-to-metas-accounts-center/</span></a> <a href="https://mastodon.social/tags/WhatsApp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WhatsApp</span></a> <a href="https://mastodon.social/tags/Meta" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Meta</span></a> <a href="https://mastodon.social/tags/SocialMedia" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SocialMedia</span></a> <a href="https://mastodon.social/tags/CrossPosting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CrossPosting</span></a> <a href="https://mastodon.social/tags/SingleSignOn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SingleSignOn</span></a></p>
rijo<p>ICYMI: New option to add WhatsApp to Meta’s accounts center <a href="https://ppc.land/new-option-to-add-whatsapp-to-metas-accounts-center/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ppc.land/new-option-to-add-wha</span><span class="invisible">tsapp-to-metas-accounts-center/</span></a> <a href="https://frankfurt.social/tags/WhatsApp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WhatsApp</span></a> <a href="https://frankfurt.social/tags/Meta" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Meta</span></a> <a href="https://frankfurt.social/tags/SocialMedia" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SocialMedia</span></a> <a href="https://frankfurt.social/tags/CrossPosting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CrossPosting</span></a> <a href="https://frankfurt.social/tags/SingleSignOn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SingleSignOn</span></a></p>
PPC Land<p>ICYMI: New option to add WhatsApp to Meta’s accounts center: Meta introduces a new option to link WhatsApp to its accounts center, enabling cross-posting and single sign-on. <a href="https://ppc.land/new-option-to-add-whatsapp-to-metas-accounts-center/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ppc.land/new-option-to-add-wha</span><span class="invisible">tsapp-to-metas-accounts-center/</span></a> <a href="https://mastodon.social/tags/WhatsApp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WhatsApp</span></a> <a href="https://mastodon.social/tags/Meta" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Meta</span></a> <a href="https://mastodon.social/tags/SocialMedia" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SocialMedia</span></a> <a href="https://mastodon.social/tags/CrossPosting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CrossPosting</span></a> <a href="https://mastodon.social/tags/SingleSignOn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SingleSignOn</span></a></p>
Silke Meyer<p>Alles Gute für das neue Jahr! 🎉 Bei uns steht im Januar der <span class="h-card" translate="no"><a href="https://univention.social/@univention" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>univention</span></a></span> Summit im Mittelpunkt. Das Programm wird wieder toll! Auch mein Lieblingsthema Keycloak steht auf dem Plan: Ich bereite Euch einen Input vor zu den häufig gestellten Fragen rund um MFA, Kerberos-Integration und High Availability des IdP. Ihr kommt doch alle? <a href="https://www.univention-summit.de/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">univention-summit.de/</span><span class="invisible"></span></a></p><p><a href="https://univention.social/tags/univention" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>univention</span></a> <a href="https://univention.social/tags/univentionsummit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>univentionsummit</span></a> <a href="https://univention.social/tags/keycloak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>keycloak</span></a> <a href="https://univention.social/tags/sso" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sso</span></a> <a href="https://univention.social/tags/singlesignon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>singlesignon</span></a> <a href="https://univention.social/tags/freesoftware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>freesoftware</span></a></p>
Silke Meyer<p>Access Control in Keycloak without LDAP groups: Want to restrict access to a connected service in Keycloak, but don't have an LDAP group to use as a filter? In this example, I'll show you how to assign a predefined role to specific user accounts to control access. While the use case is quite specific, this approach illustrates how you can leverage roles in Keycloak for flexible access management.</p><p><a href="https://help.univention.com/t/how-to-restrict-access-to-a-keycloak-client-to-self-registered-user-accounts/23629" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">help.univention.com/t/how-to-r</span><span class="invisible">estrict-access-to-a-keycloak-client-to-self-registered-user-accounts/23629</span></a></p><p><a href="https://univention.social/tags/keycloak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>keycloak</span></a> <a href="https://univention.social/tags/sso" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>sso</span></a> <a href="https://univention.social/tags/singlesignon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>singlesignon</span></a> <a href="https://univention.social/tags/nubus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nubus</span></a> <span class="h-card" translate="no"><a href="https://univention.social/@univention" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>univention</span></a></span> <a href="https://univention.social/tags/iam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iam</span></a> <a href="https://univention.social/tags/authorization" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>authorization</span></a></p>
Silke Meyer<p>Ein <span class="h-card" translate="no"><a href="https://univention.social/@univention" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>univention</span></a></span> -Kollege und ich fahren am Wochenende zu meiner Lieblingsveranstaltung, den Chemnitzer Linuxtagen. </p><p>Für Sonntag morgen hab ich Input im Gepäck: Ich versuche mich in einem einführenden Rundumschlag zum Thema Single Sign-on für Webanwendungen. Was ist das überhaupt? Nimmt man SAML oder OIDC? Shibboleth IdP oder Keycloak? <br>Schaut vorbei - ich freue mich!</p><p><a href="https://chemnitzer.linux-tage.de/2024/de/programm/beitrag/213" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">chemnitzer.linux-tage.de/2024/</span><span class="invisible">de/programm/beitrag/213</span></a></p><p><a href="https://univention.social/tags/singlesignon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>singlesignon</span></a> <a href="https://univention.social/tags/keycloak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>keycloak</span></a> <a href="https://univention.social/tags/shibboleth" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>shibboleth</span></a> <a href="https://univention.social/tags/saml" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>saml</span></a> <a href="https://univention.social/tags/oidc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>oidc</span></a> <a href="https://univention.social/tags/univention" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>univention</span></a> <a href="https://univention.social/tags/clt2024" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>clt2024</span></a></p>