Skip to content

Keycloak password policy to check for breached passwords as reported by haveibeenpwned.com

Notifications You must be signed in to change notification settings

alvinbaena/keycloak-pwned-password-policy

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

9 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Keycloak Pwned Passwords (have i been pwned) Password Policy

This plugin implements a password policy for Keycloak that checks user passwords against the Pwned Passwords API from have i been pwned?.

Messages

This plugin has only one message key: invalidPasswordBreached, which if you are on a Keycloak with version greater than 24.0.0 can be changed on the realm's localization overrides. If on Keycloak < 24.0.0, change the message in the src/main/resources/theme-resources/messages localization files, and recompile the plugin.

About

Keycloak password policy to check for breached passwords as reported by haveibeenpwned.com

Resources

Stars

Watchers

Forks

Packages

No packages published

Languages