Who is this for?

This is an introductory topic for developers, DevOps engineers, platform engineers, and cloud architects who want to deploy centralized authentication and identity management using Keycloak on Arm-based cloud environments.

What will you learn?

Upon completion of this Learning Path, you will be able to:

  • Install and configure Keycloak on Azure Cobalt 100-based Arm64 virtual machines (VMs).
  • Configure PostgreSQL as the backend database for Keycloak.
  • Configure realms, users, and OAuth2/OpenID Connect clients.
  • Integrate a Flask application with Keycloak authentication.
  • Validate OAuth2/OpenID Connect authentication workflows.

Prerequisites

Before starting, you will need the following:

  • A Microsoft Azure account with access to Cobalt 100-based instances (Dpsv6)
  • Basic knowledge of Linux command-line operations
  • Familiarity with SSH and remote server access
  • Basic understanding of authentication, OAuth2, and identity management concepts

Summary

AI-assisted

This summary was drafted with an approved AI-assisted workflow and reviewed by Arm contributors before publication. Human technical review remains part of the process so the final page reflects engineering rigor, accuracy, and Arm editorial standards.

Close
?
You’ll deploy Keycloak on an Azure Cobalt 100 Arm64 VM with PostgreSQL and a Flask OAuth2 demo. First, you’ll create a Dpsv6 VM, restrict network access to required services, and install the needed packages. You’ll configure a realm, users, and an OpenID Connect client. Then, you’ll test the admin console and Flask login flow to verify redirects and the authenticated session.

Frequently asked questions

AI-assisted

These FAQs were drafted with an approved AI-assisted workflow and reviewed by Arm contributors before publication. Human technical review remains part of the process so the final page reflects engineering rigor, accuracy, and Arm editorial standards.

Close
?
How do I know that the Azure VM is ready before installing Keycloak?
Verify that you can connect to the instance over SSH and update the system packages.
Which inbound firewall rules should I add in Azure?
Add inbound rules for ports 8080, 9000, and 5000. Test from a browser using the VM’s public IP and the configured ports to confirm access.
What should I check if Keycloak fails to start with database errors?
Ensure that PostgreSQL is installed, running, and reachable on the VM. Check that the Keycloak database settings match the PostgreSQL database, user, and connection details that you configured.
How do I confirm my realm, user, and client configuration is correct?
Open the Flask application and start the login flow. You should be redirected to the Keycloak login page and, after authenticating, returned to the Flask app with an authenticated session.
Can I run Keycloak and the Flask demo on the same VM?
Yes. You’ll install both on the Azure Cobalt 100-based VM and expose them through separate inbound rules in the network security group.
Next