Secure User Management Gateway for Microservices Architecture APIs Using Keycloak on XYZ

Amerta Bian Kretarta, Herman Kabetta · 2022

XYZ agency has an application that supports administrative business processes such as scheduling activities, accessing mail, etc. This application uses a microservices architecture that consists of various XYZ services. There is a user authentication process for every access to application services. Therefore, Keycloak centralizes all user authentication. This study will implement the REST API as a User Management Gateway application using Keycloak on the XYZ Internal Web Application Microservices to facilitate user management. This application implements JSON Web Token authentication with the RSA-256 algorithm on every use of the XYZ Keycloak REST API. The features of the REST API Keycloak developed are tailored to the needs and business processes of the XYZ application. We develop the User Management Gateway using the SCRUM development method, divided into three sprint stages: design, manufacturing, and testing. Results of this study show that the development of the User Management Gateway has been made following the needs of the XYZ application business process and has met the required security factors.

Read the paper · More papers on PaperTik