Keycloak jobs
...file and knowledge layer, while the main user interaction would take place through a separate dashboard. For this setup, we are looking for a Nextcloud specialist who can support the development, integration, and long-term maintenance of custom Nextcloud apps or plugins. The main areas we would like to evaluate and potentially implement are: * Single Sign-On (SSO) integration with our existing Keycloak identity provider * Middleware integration, so that Nextcloud can communicate with our dashboard and internal systems * Event handling, for example when files are uploaded, changed, deleted, commented on, or tagged * Webhook or API-based communication from Nextcloud to the middleware * Metadata management for files and documents, such as categories, topics, course references, da...
...search/inventory, online ordering, mobile payments (MTN MoMo, Orange Money etc.), prescription OCR, delivery tracking, AI assistance, telemedicine, analytics, fraud detection. Must be production-ready for national rollout with low-bandwidth, offline support, scalability, security & compliance. Core Architecture Frontend: Flutter (3 apps), (portals) Backend: NestJS microservices + Kong gateway + Keycloak auth ERP: ERPNext DB: PostgreSQL, Redis, OpenSearch, Qdrant, MinIO AI: LangChain + Ollama + Tesseract Streaming: Kafka Infra: Docker + Kubernetes, GitLab CI/CD, Prometheus/Grafana, Cloudflare Key Microservices: User, Pharmacy, Inventory, Search, Order, Payment, Delivery, Notification, AI. Agency Portfolio Requirements Must demonstrate 2+ similar production healthtech/pharm...
...React / * TypeScript * Material UI or equivalent enterprise UI framework Backend * Java Spring Boot * REST APIs * Microservices Architecture #### AI & Intelligent Services * Python * FastAPI * AI/LLM Integration Experience Database & Infrastructure * PostgreSQL * Redis * RabbitMQ * Elasticsearch * MinIO or equivalent object storage Security & Identity * OAuth2 * SSO * MFA * RBAC * Keycloak or equivalent IAM solution DevOps * Docker * Kubernetes * CI/CD Pipelines * Monitoring & Observability Security Requirements The application must be designed with enterprise-grade security standards including: * Secure authentication and authorization * Role-based access control * Audit logging * Secrets management * Encryption at rest and in transit * Secure API d...
...report. TIMELINE — TIME-SENSITIVE: We need the testing performed and the final report delivered within 1 week of kickoff. Please only bid if you have current availability. ABOUT THE SYSTEM (full details and credentials shared under NDA with the selected tester): - Customer-facing web application: / React / TypeScript - Backend: Python / Django / Django REST Framework API - Authentication: Keycloak (OIDC) — username/password, social login, TOTP/MFA - Two supporting Python/Django microservices - Hosted on AWS (ECS Fargate, ALB + WAF, RDS PostgreSQL) - Role-based access with two primary roles (organization admin + end user) SCOPE: - External web application penetration test (OWASP Web Security Testing Guide) - API penetration test (OWASP API Security Top 10) - Authentic...
...ARCHITECTURE ## 3.1 High-Level Architecture Frontend Layer: * React.js * TypeScript * Material UI / Ant Design Backend Layer: * FastAPI (Python) * REST APIs * WebSocket support Monitoring Stack: * Prometheus * Grafana * Telegraf * Alertmanager Logging Stack: * ELK Stack * Elasticsearch * Logstash * Kibana Messaging Layer: * RabbitMQ Database: * PostgreSQL Authentication: * Keycloak OR JWT-based Auth Containerization: * Docker * Docker Compose Deployment: * Ubuntu Server * Linux environment mandatory --- # 4. CORE MODULES # MODULE 1: AUTHENTICATION & USER MANAGEMENT ## Features * Login/Logout * JWT Authentication * Role-based access control * Session handling * Password encryption * Audit logging ## Roles 1. Admin 2. Operator 3. Observer ## Ac...
Module 1: Authentication & Authorization (RBAC) — 25 hrs Keycloak local config: native username/password auth, MFA enforcement, single auth method per user, Administrator & Professional role mappings with JWT claims. Backend RBAC: tenant-scoped queries, role-based API guards, dossier permission model (Owner/Write/Read) covering creation, metadata edits, archiving/unarchiving, deletion, document upload/delete, Edit Mode activation, section completion, and report reverts. Admin pages for user management: tenant initialization with default roles, user creation, profile updates, deactivation with immediate revocation, role assignment, and immutable audit logs. Dossier permission grants: Owners can grant/revoke Read/Write access within their tenant. Module 2: Research Rep...
...with Linux servers, deployments, AWS, GCP and Microsoft Azure - Are comfortable with Docker and CI/CD pipelines - Have worked with monitoring and observability tools (Prometheus + Grafana + Loki + Tempo) - Enjoy automating things and making infrastructure more reliable - Are always looking to expand your DevOps skill set - Bonus: Experience with PHP, Laravel, MySQL, Microservices, RabbitMQ, Kong, Keycloak, Kubernetes We genuinely invest in the people we work with. You will have a clear scope of work, consistent feedback, and real opportunities to grow your skills on interesting and varied projects. This is a ongoing freelance position, meaning ongoing and stable work, and a real long-term relationship, not just another short project. Engagement details - Type: Long term ongoi...
...we are building: An AI‑native, open‑source GRC (Governance, Risk & Compliance) platform for small enterprises. The system automates regulation discovery, document analysis (with translation), offline mobile evidence capture, continuous control monitoring, and proactive risk remediation using agentic AI. Tech stack (all open‑source): - Backend: FastAPI (Python), PostgreSQL 16 + pgvector, Redis, Keycloak (OIDC/MFA), n8n workflows - AI & ML: Ollama (llama3, nomic-embed-text, phi3) + Opus‑MT (local NMT) - Frontend (web): 14 (React, TypeScript, TailwindCSS) - Mobile: SwiftUI (iOS), Kotlin/Jetpack Compose (Android), SQLite for offline sync - Infrastructure: OCI Always Free (Ampere A1, 4 OCPUs, 24 GB RAM) in Johannesburg region - Monitoring: Prometheus, Grafana, Open...
...essential e-commerce features—authentication, product catalogue endpoints, shopping cart and order workflows, plus a role-based layer to separate admin, vendor, and customer access. Deliverables: • NestJS project scaffold wired to PostgreSQL • Auth module with JWT/refresh-token flow • CRUD endpoints for products and orders • Assist in integrating authentication and authorization systems (e.g., Keycloak, OAuth2, OpenID Connect) • Contribute to cloud-based deployments on Google Cloud Platform (GCP). • Role-based guards and policies • Docker-compose file for local orchestration • Concise setup & run documentation Acceptance criteria: all endpoints return the expected responses in the supplied Postman collection, unit tes...
...React + Keycloak + PostgreSQL) I need a production-ready CRM system for managing customer service renewals (insurance, PUC, vehicle fitness, AMC). The system must be fully self-hosted on an Ubuntu VPS (India). Core features required: Customer management with multiple services per customer Auto task generation based on expiry dates with priority scoring "Today's Calls" screen for callers with 1-click outcome buttons Follow-up escalation: normal → relative contact → visit Lead creation and sales pipeline (quote → negotiation → confirmed → closed) Automated WhatsApp/SMS reminders at 30, 15, 5 days before expiry Role-based access: Admin, Caller, Salesman Razorpay payment integration Daily auto-backup and audit logs Tech stack (fixed...
I want to give my users a seamless Single Sign-On experience across our web application and have decided on OpenID Connect as the protocol. At the moment I do not have an identity provider selected, so part of the job is to help me evaluate and configure a suitable IdP—whether that ends up being Auth0, Okta, Keycloak, Azure AD, or another standards-compliant option. The deliverable is a fully working SSO flow: • IdP chosen, configured, and connected to the web app • Secure login, logout, and token refresh implemented with OpenID Connect • Role/claim mapping set up so the app can authorize users correctly • Clear, step-by-step documentation and a short hand-over call so I can maintain the setup myself Everything needs to be testable in a staging...
My existing and working ASP.NET 4.8 WebForms application already supports OAuth 2.0 logins through Google, Microsoft and Keycloak. Now I need Apple ID added to the mix so users can enjoy the same single-sign-on convenience. You will work inside the current OAuth 2.0 flow with Microsoft OWIN—no ground-up rebuild. The main tasks are: • Adapt the current solution for use with Apple ID authentication. • Implement the Authorization Code flow, hook it into the current login page, and surface a “Sign in with Apple” button that matches Apple’s UI guidelines. • Exchange the code for tokens, validate the id_token (JWT) server-side, display the authenticated user information on the webpage and persist refresh tokens the same way we already do for Goo...
I am building an AI powered workflow generator that plugs into Keycloak for authentication and lets end users describe a business process either by typing or by speaking. The system should transcribe audio, understand the intent, and immediately create an executable automation flow that runs the stated tasks end to end. Core objectives • Keycloak integration: users sign in once and permissions carry through every action the generator builds. • Natural language and speech support: the same engine must parse typed sentences and real-time voice input, then map them to nodes, branches, and triggers in the workflow. • Task automation focus: the flows you generate will orchestrate everyday business processes such as approvals, notifications, data hand-offs and...
I run a set of stand-alone Docker containers in South Africa, Germany, North America and Australia, all fronted by Traefik with a Keycloak header-based auth plugin. This setup works, however I would like to have all my applications respond on a single domain IE: would (if i was in Germany) point to the german server , and if i was in Austrailia point to the Austrailian server I seem to believe this is achievable via a relatively in-expensive routing setup via cloudlfare, and am looking for some assistance with this
Hello, We are looking for a developer with huge knowledge of .NET 9. We are in the early stages of development. We use ASP.NET and Blazor. For our SSO, we use Keycloak. For our DB, we use PostgreSQL. We are doing an appointment website. Please feel free to tell us about your skills and show us your projects with .NET.
...checks • Instrument capture and digital pathology scanning (3DHistech / Hamamatsu) • PyTorch models orchestrated through MLflow for pre-screening and report generation • Clinician portal pushes real-time alerts and referral prompts • Specialist routing and secure chain-of-custody for forensic specimens • Cloud LIMS (OpenELIS or LabWare Cloud) as the data backbone • FHIR/REST APIs, Keycloak SSO, TLS 1.3 and AES-256 encryption securing every transaction Concrete deliverables 1. Production-ready architecture (IaC—Terraform or similar), complete with CI/CD pipelines 2. AI modules that consume analyzer data and whole-slide images, then return structured HL7/FHIR findings 3. Role-based web portals for lab staff, clinicians, speci...
I already have the first version of a fitness-tracking platform running on Spring Boot microservices, a React front-end, Docker containers, a Keycloak OAuth2 realm, and an Apache Kafka event bus. The foundations are solid, but I now want to push the system further so it truly shines with its AI-driven features. What the next milestone must achieve • The AI service should deliver personalised workout plans, provide real-time feedback during exercises, and update a daily activity log—all generated on the fly through Google Gemini or OpenAI models. • The User service needs to capture and persist richer profile data—specifically each member’s fitness goals, health metrics, and exercise preferences—so the AI has the context it needs. • Kafka ...
...micro-services, PostgreSQL for persistence, Redis for caching/queueing, all containerised and deployed on AWS. Keycloak must handle authentication and authorisation, enforcing separate roles for students, instructors and administrators. Core features are limited on purpose—user access, course content management and progress tracking/reporting—so the focus stays on clean architecture and code clarity rather than breadth. A minimalistic interface is preferred everywhere; the mobile companion (Android and iOS) should expose the same three features with a consistent look and feel. To be truly useful as a study project I need everything documented: how the services talk to each other, how Keycloak is wired in, and how the whole stack is reproduced from scratch in ...
...SheWell Telehealth MVP, a modular, microservice-based healthcare platform focused on women’s wellness. The project includes telehealth features, scheduling, secure messaging, EHR, consent workflows, payments, and a basic AI-powered health score. This MVP will demonstrate the full patient-to-clinician journey. Core Requirements The MVP includes the following modules: Authentication & Roles using Keycloak (Patients, Clinicians, Admins) Scheduling & Appointments integrated with Video Consultations via LiveKit Secure Messaging using Matrix/Element EHR (FHIR-based) built on Medplum (Patient, Practitioner, Observations, Encounters) Forms & Consent using + Documenso AI Health Score (Prototype) using Python or GPT-based mock logic Payments using Stripe / St...
Hello, We are looking for a developer with huge knowledge of .NET 9. We are in the early stages of development. We use ASP.NET and Blazor. For our SSO, we use Keycloak. For our DB, we use PostgreSQL. We are doing an appointment website. Please feel free to tell us about your skills and show us your projects with .NET.
...hosting config. Odoo connector/addons (if needed) as separate repo/module. API/ERD diagrams and endpoint specs. Play Store & App Store live apps (or ready-to-submit bundles). Admin/ops docs + handover. Tech Preferences Frontend: Flutter 3.x (Material 3), Riverpod/BLoC, Freezed, Dio, json_serializable. Backend/Odoo: Odoo 16/17, PostgreSQL, OCA modules if useful. Auth: OAuth2/JWT via Odoo/Keycloak (open to suggestion). Build: Fastlane, GitHub Actions/Bitrise. Obs: Firebase Crashlytics, Analytics; Sentry optional...
... - Security: TLS, encrypted secrets, RBAC/ABAC, audit trails; pen-test before go-live. - Compliance-ready: Data residency awareness, AML screening hooks, PII protection. Preferred Tech Stack - Web: React/, Tailwind - Mobile: React Native (Expo or bare for background location) - Backend: Node.js (NestJS) or Java (Spring Boot); Postgres, Redis - Messaging: Kafka or Redis Streams - Auth: Keycloak or Auth0 - Infra: Docker, Kubernetes (or ECS), Terraform on AWS/Azure/GCP - Notifications: SendGrid/Twilio/FCM - Payments: Modular adapters (M-Pesa, bank transfer, card) Deliverables - Source code in our GitHub, CI/CD pipelines, IaC, and three environments (Dev/Staging/Prod) - Web portals: Admin, OMC Ops, Station/Reseller, Transport Ops - Mobile apps: Driver (GPS + e-POD) and Reseller (or...
...native Android & iOS developer or team to implement continuous and reliable background/killed-state location tracking. The app must be able to send user location updates to AWS IoT (IoT topic) even when: The app is in the background The app is swiped away or force-killed Location of a user is requested on demand from the server side. We will provide all backend APIs and authentication (Keycloak + JWT) once the developer is confirmed. Clarification During our research, we noticed that some apps are able to fetch a user’s live location even when the app is not running in the background. This may be achieved using silent push notifications or other OS-level techniques — we are open to expert guidance on the best possible approach. Our goal is to implem...
...Android or team to implement continuous and reliable location tracking even if the app is in background/killed-state. The app must be able to send user location updates to AWS IoT (IoT topic) even when: The app is in the background The app is swiped away or force-killed Location of a user is requested on demand from the server side. We will provide all backend APIs and authentication (Keycloak + JWT) once the developer is confirmed. Clarification During our research, we noticed that some apps are able to fetch a user’s live location even when the app is not running in the background. This may be achieved using silent push notifications or other OS-level techniques — we are open to expert guidance on the best possible approach. Our goal is to implement a ...
...native Android & iOS developer or team to implement continuous and reliable background/killed-state location tracking. The app must be able to send user location updates to AWS IoT (IoT topic) even when: The app is in the background The app is swiped away or force-killed Location of a user is requested on demand from the server side. We will provide all backend APIs and authentication (Keycloak + JWT) once the developer is confirmed. Clarification During our research, we noticed that some apps are able to fetch a user’s live location even when the app is not running in the background. This may be achieved using silent push notifications or other OS-level techniques — we are open to expert guidance on the best possible approach. Our goal is to implem...
I need a reliable Keycloak specialist to establish a solid identity-management foundation for our web applications. The primary objective is to centralise user identities and deliver smooth single sign-on. Scope of work • Install and configure the latest stable Keycloak on our preferred infrastructure (Docker or bare-metal Linux—advise on best fit). • Create a production-ready realm, roles, groups and client definitions focused on web-app access only (no mobile clients required). • Integrate the following identity providers: – Google using OAuth2 / OpenID Connect – Microsoft Azure AD / Entra ID via SAML or OpenID Connect (whichever you recommend for long-term maintainability). • Enable cross-provider SSO so users can move b...
...wiews with categories - daily comment view and history - access management (files shared) CSV files should be displayed as graph when opened in the browser New file, new owner, new daily comment, new share popups In résumé : - User - owner 1 - Files + daily comments + share rights etc - owner 2 - ... Platform will be deployed with docker compose and sso will be keycloak Amazon S3 will store the files A virtual machine (fedora silverblue, immutable) should be created with node red, and flows to send data to first platforms should be constructed 4 pure html interfaces should be created and connected to nodered through web socket. Each interface will contain 4 cards with ws values and 2 plots. Interface will be modern but basic Quot...
I need a custom Keycloak extension that lets Keycloak delegate user login to our existing REST API, which already issues JWT tokens. When someone enters their credentials on Keycloak, the module should call the remote endpoint, validate the response JWT, and then create / update the user session in Keycloak. The same response also carries role and permission data, and those must be mapped one-to-one to Keycloak roles so that realm-level and client-level access control continues to work exactly as it does today inside our product. Here is what I expect to receive: • Production-ready source code for the Keycloak SPI implementation (Java, Maven project, Dockerfile) that performs the remote call, parses the JWT, handles error states, and transla...
...passwordless authentication with Keycloak on both iOS and Android. The piece must read like a hands-on workshop: each phase of configuration and coding should build naturally on the previous one, so a reader can follow along and have a working demo by the end. Core expectations • Step-by-step tutorial: from spinning up or extending an existing Keycloak realm to registering a device and performing the first successful passwordless login. • Practical code examples: show the exact mobile-side calls that generate, store, and use FIDO2 credentials as well as the Keycloak configuration snippets that enable the flow. Include companion screenshots or CLI output whenever they clarify a step. Structure and depth Begin with a short overview of FIDO2 in the ...
...delivery status; can integrate with backend order system 8. AI Model Training & Product Database PostgreSQL / MySQL (database) + Python (for training scripts) Stores seller product descriptions and historical orders; used for AI model fine-tuning and recommendation logic 9. Logging & Monitoring Prometheus + Grafana Monitor system performance, order flows, and API health 10. Security & Authentication Keycloak / OAuth2 Provides secure login for customers, sellers, and drivers; can integrate with frontend and backend Additional Notes for Developers MVP Approach: Start with just message input → AI product suggestion → order creation → notification. Later add delivery tracking and analytics. Integration: Open-source modules can communicate via REST APIs ...
I need help configuring Keycloak for SAML authentication to access Dell ECS. The setup is running in a Docker container with Keycloak version 19 or later. Requirements: - Configure SAML authentication for internal users - Access to S3 bucket with IAM roles/policies - Ensure secure access to Dell ECS - Document the setup process Ideal Skills: - Experience with Keycloak and SAML - Docker proficiency - Knowledge of Dell ECS Looking for an efficient and secure configuration.
...with our existing Keycloak setup. We already use Keycloak for authentication in our Laravel applications and want to unify login across all platforms. The goal: enable customers and staff to log in with Keycloak instead of PrestaShop’s native login. We require clean implementation and documentation so our team can maintain it afterwards. We also want to extend authentication by: - Allowing login via Google and Facebook - Adding support for a biometric authentication system for sensitive areas (e.g., account validation, checkout security, or admin actions) Requirements - Strong knowledge of PHP - Experience with PrestaShop module development - Hands-on experience with Keycloak integration (OIDC / SAML) Deliverables - PrestaShop authentication fully mi...
...levels. - Guarantee scalability and security from day one - Use cloud-native deployment with CI/CD pipelines, monitoring, and automated scaling. We are open to best-in-class modern solutions, such as: Backend: Node.js (NestJS), Java (Spring Boot), or Go Frontend (web): React () or Vue.js (Nuxt) Database: PostgreSQL (multi-tenant), with ORM (Prisma, TypeORM, Hibernate) Auth: OAuth2 / JWT / Keycloak or Auth0 Infrastructure: Docker, Kubernetes, AWS/GCP/Azure Please send: Examples of SaaS/multi-tenant projects you’ve worked on Your technical expertise and suggested stack for this project Estimated timeframe for MVP delivery Availability (weekly hours) More detailed specifications will be shared with the selected developer....
...delivery status; can integrate with backend order system 8. AI Model Training & Product Database PostgreSQL / MySQL (database) + Python (for training scripts) Stores seller product descriptions and historical orders; used for AI model fine-tuning and recommendation logic 9. Logging & Monitoring Prometheus + Grafana Monitor system performance, order flows, and API health 10. Security & Authentication Keycloak / OAuth2 Provides secure login for customers, sellers, and drivers; can integrate with frontend and backend Additional Notes for Developers MVP Approach: Start with just message input → AI product suggestion → order creation → notification. Later add delivery tracking and analytics. Integration: Open-source modules can communicate via REST APIs ...
...delivery status; can integrate with backend order system 8. AI Model Training & Product Database PostgreSQL / MySQL (database) + Python (for training scripts) Stores seller product descriptions and historical orders; used for AI model fine-tuning and recommendation logic 9. Logging & Monitoring Prometheus + Grafana Monitor system performance, order flows, and API health 10. Security & Authentication Keycloak / OAuth2 Provides secure login for customers, sellers, and drivers; can integrate with frontend and backend Additional Notes for Developers MVP Approach: Start with just message input → AI product suggestion → order creation → notification. Later add delivery tracking and analytics. Integration: Open-source modules can communicate via REST APIs ...
...working relationship. About us: We run several production-grade Linux servers that need a steady, knowledgeable hand. So ONLY if YOU HAVE EXPERIENCE with these systems and technologies, contact me now. Our setup: 6 virtual servers running on 2 running Dockerfrontend stuff with HAproxy, KeyCloak and Openremote and Caddy 3 running PostGres databases with Hetzner loadbalander, bucardo 1 running Nagios As you see some of the services are containerised with Docker, like Openremote, KeyCLoak, HAproxy, so you MUST HAVE experience with Docker. The tasks: As a startup we will have projects coming from time to time, big and small. It will start slow, and will gradually progress in the future. Examples on what we need a sysAdmin to solve, would be stuff like: server maintena...
I have an existing Keycloak instance that was only partially configured; it now needs to be taken to full production-ready shape for our in-house applications. The immediate priorities are: • Fine-tune user authentication flows • Define and implement granular authorization policies • Enable seamless Single Sign-On across all internal services Everything must be codified in Terraform, and the build-and-deploy lifecycle wired into GitLab CI so that future changes are fully automated and reproducible. Pipelines should spin up Keycloak (with its realms, clients, roles, groups and policies) in any environment from a single merge—no manual clicks in the admin console. I can give you access to the current Terraform modules, partial realm export and our ...
...with our existing Keycloak setup. We already use Keycloak for authentication in our Laravel applications and want to unify login across all platforms. The goal: enable customers and staff to log in with Keycloak instead of PrestaShop’s native login. We require clean implementation and documentation so our team can maintain it afterwards. We also want to extend authentication by: - Allowing login via Google and Facebook - Adding support for a biometric authentication system for sensitive areas (e.g., account validation, checkout security, or admin actions) Requirements - Strong knowledge of PHP - Experience with PrestaShop module development - Hands-on experience with Keycloak integration (OIDC / SAML) Deliverables - PrestaShop authentication fully mi...
...exporting to HTML with role-based access control (admin, employee). TECH STACK CORE TECHNOLOGIES: - React Native: 0.72+ - TypeScript: 5.0+ - Platforms: iOS 12.0+, Android 6.0+ APPLICATION ARCHITECTURE: - State Management: Redux Toolkit - Navigation: React Navigation 6+ - Local Database: SQLite with react-native-sqlite-storage - HTTP Client: Axios + React Query - Authentication: Keycloak with react-native-keycloak - Image Processing: react-native-image-picker, react-native-image-resizer OFFLINE FUNCTIONALITY SYNCHRONIZATION: - Local storage of all data - Operation queue for offline mode - Automatic synchronization when connected - Conflict resolution by frontend version CODE QUALITY DEVELOPMENT STANDARDS: - ESLint: @react-native-community/eslint-config - Pre...
...Node.js, Redis, Kafka, PostgreSQL, MongoDB, and real-time communication (WebSocket/), with frontend experience in and React.js. Familiarity with tools like Supabase, Firebase, Keycloak, Docker, and BigBlueButton integration is a big plus. We value clean code, proactive communication, and ownership. This is a long-term engagement for the right individual, with opportunities to influence core architecture and tech decisions. Tech Stack Includes: • Backend: NestJS, Node.js, Redis, Kafka, WebSocket • Frontend: , React.js • Databases: PostgreSQL (PGAdmin), MongoDB • Auth: Keycloak, Firebase Auth • DevOps & Cloud: Docker, Supabase, Firebase • Others: GitLab CI/CD, BigBlueButton (BBB) If you’ve built complex, event-driven systems ...
HAVE AIR-GAPPED ENVIRONMENT. DO NOT BID UNLESS YOU HAVE YOUR OWN ENVIRONMENT YOU CAN BUILD THIS AND THEN TRANSFER THE FILES TO ME! I need a comprehensive lab environment set u...with WireGuard VPN functionality - Ansible server with SSH key-based authentication with Windows 2019, Windows 11, Ubuntu templates - VMware network isolation and segregation: - DMZ - VM Management - VM Internal Lab - Docker with Portainer for management - Containers: Prometheus, Grafana, Wazuh, Security Onion (Zeek, Suricata, Elasticsearch, Kibana), OpenVAS (GVM), OpenSCAP, Nextcloud, Keycloak Ideal Skills & Experience: - Expertise in VMware ESXi and network segmentation - Proficient with pfSense and WireGuard - Strong knowledge of Ansible and Docker - Experience with the specified containeriz...
Project: OAuth Integration for Python FastAPI Teams Bot (No Azure) Objective Secure an existing Microsoft Teams bot written in Python using FastAPI, hosted on Railway, by adding OAuth2 authentication via an external provider (Auth0, Keycloak, etc.), and restricting access to a list of authorized users based on email address. Requirements The bot is already implemented with FastAPI and deployed on Railway. Implement OAuth2 login flow with an external provider (no Azure AD, no Azure Bot Service). On user message: Send an Adaptive Card with a “Login” button (). After the user logs in: Retrieve the user's email from the OAuth provider (via token or /userinfo endpoint). Check if the email is in an authorized whitelist (defined in an environment variable or a confi...
I'm looking for an experienced cybersecurity specialist to develop a Wazuh ruleset for user presence monitoring, leveraging OAuth and MFA2 or MFA3 data for login controls. Requirements: - User sign-in presence data collection, linking with Keycloak for serialized authentication. - Need to monitor mail checking and browser access. - Collect user signature data on: - Browser access details - Nearby devices Ideal Skills and Experience: - Expertise in Wazuh and cybersecurity monitoring tools - Familiarity with OAuth, MFA protocols, and Keycloak integration - Experience in user activity and presence data collection - Strong understanding of privacy and data security considerations I have set up on WSL for tinyllama, minigpt4 with RASA for action controls. You...
I'm seeking an experienced developer to integrate the Superset SDK into my WordPress site. Superset is already connected to Keycloak, and all necessary infrastructure is in place. Key Requirements: - Embed operational dashboards for real-time monitoring. - Enable filters and drill-downs, and provide real-time data updates within the embedded dashboards. Ideal Skills and Experience: - Proven experience with Superset SDK. - Strong familiarity with WordPress and Keycloak. - Expertise in dashboard embedding and real-time data integration. Please only bid if you have relevant experience. A detailed discussion over a freelancer call will be required before project award.
I'm looking for an experienced developer to help embed Apache Superset dashboards into my WordPress site using the SDK. Requirements: - Dashboards need to support role-based access control. - User authentication will be via an external system. Ideal Skills: - Proficiency with Apache Superset - Experience with WordPress and keycloak integration - Knowledge of SDKs and embedding dashboards - Familiarity with role-based access control and external authentication systems Please provide relevant experience in your bids.
I'm looking for an experienced cybersecurity specialist to develop a Wazuh ruleset for user presence monitoring, leveraging OAuth and MFA2 or MFA3 data for login controls. Requirements: - User sign-in presence data collection, linking with Keycloak for serialized authentication. - Need to monitor mail checking and browser access. - Collect user signature data on: - Browser access details - Nearby devices Ideal Skills and Experience: - Expertise in Wazuh and cybersecurity monitoring tools - Familiarity with OAuth, MFA protocols, and Keycloak integration - Experience in user activity and presence data collection - Strong understanding of privacy and data security considerations I have set up on WSL for tinyllama, minigpt4 with RASA for action controls. You...
I'm seeking an experienced AWS and JHipster developer to resolve configuration issues for my application. It's currently set up with ALB, ECS, Fargate, and integrated with Keycloak. The backend is built with Java and the frontend with Angular. I'm looking for an professional who has experience to submit applications to AWS infrastructure to understand where I need to configure to finish it. The application is running on local environment. I have an environment fully configurated on AWS and the application running on that. Key Issues to Address: - CloudFront settings need adjustments to properly redirect backend requests and manage SESSION cookies. - ALB session stickiness issues are causing persistent redirects to the login page. Currently, session stickines...
I’m looking for a developer to help me apply simple customizations to the Account Console theme in Keycloak 26.3.1. ✅ I already have: My own logo (ready to be used) My primary brand color (hex code) I just need someone to: Replace the default logo with mine Update the color scheme (backgrounds, buttons, links) using my color Make sure the theme works correctly with the current version of Keycloak ⚠️ Important: I’m only looking for basic changes – no need for custom layouts or advanced styling. I’ll continue with further modifications myself once the base is done. Deliverables: A working customized theme folder I can plug into Keycloak (Optional) A quick explanation of where changes were made Thanks in adva...
...The role primarily involves: - **Deployment and Release Management**: Proficiently managing deployment processes using Github Actions to ensure smooth releases. - **Kubernetes Management**: Expertise required in cluster management and pod configuration, ensuring efficient orchestration of our containerized applications. - **Additional Skills**: Familiarity with Helm, Vault, Postgres, and Keycloak is essential to align with our current tech stack. Ideal candidates should have: - Strong experience with DevOps practices and tools. - Proven track record in managing deployment pipelines and Kubernetes environments. - Ability to work in a fast-paced, 24/7 operational setting. If you have the required skills and are interested in this opportunity, please reach out with your exp...
...display. ### 9. Security Requirements * HTTPS for all communications. * OAuth2 / JWT user authentication. * Role-based access control. * Audit logging of changes. ### 10. Technology Stack * **Frontend**: React (TypeScript), Recharts. * **Backend**: Node.js (Express) or Python (FastAPI). * **Database**: PostgreSQL. * **Notifications**: NodeMailer / Twilio. * **Authentication**: Keycloak or Auth0. ### 11. Deployment and Infrastructure * Docker / Kubernetes. * CI/CD pipeline (GitLab CI / GitHub Actions). * Monitoring (Prometheus / Grafana). * Database backups. * **Use only open-source or free tools; avoid paid services.** ### 12. Implementation Plan and Milestones 1. Requirements analysis and design – 2 weeks 2. Backend & database implem...