Creating AAD Keycloak composite roles (optional post deployment step)
You can create composite roles in Keycloak and link them to Azure Active Directory groups.
This may simplify the Keycloak identity provider configuration.
To successfully create composite roles in Keycloak you need the following:
The Keycloak admin password and URLs of your kdb Insights Enterprise deployment.
Create kdb Insights Enterprise composite roles
kdb Insights Enterprise uses Keycloak as its Identity and Access Management component.
Follow the steps below to log into Keycloak and create the necessary roles.
/auth/from the section above to navigate to the Keycloak web UI.
Administration Consoleand log in with the username
userand the password you provided during the deployment.
Insightstarget realm from the top-left realm drop-down.
Rolesin the left-hand menu then click on the
Enter the Role Name:
<role name>and click
Turn Composite Roles
Associate it with the desired roles.