RWS Architecture article

Keycloak

Keycloak is a candidate solution building block for the translated DC 3.0 ABB model. It remains candidate until the responsible architects confirm service ownership, support model,

  1. Typesbb
  2. Statuscandidate
  3. Domainsecurity
On this page
  1. SBB Keycloak
  2. Service Information
  3. Cost and Responsibilities
  4. Roadmap and Lifecycle
  5. Lifecycle
  6. Roadmap
  7. Architecture
  8. Technical Architecture
  9. Technical Documentation

SBB Keycloak

Service Information

Keycloak is a candidate solution building block for the translated DC 3.0 ABB model. It remains candidate until the responsible architects confirm service ownership, support model, and acceptance criteria.

ItemInformation
Solution architectTo be assigned during SBB review.
CMDB numberNot assigned yet.
Service Level AgreementTo be defined during service onboarding.
1st and 2nd line support groupTo be defined during service onboarding.
3rd line support groupTo be defined during service onboarding.
Support response timesTo be defined during service onboarding.
Managing partyIdentity and access management.
Contact personJohn de Boer.

Cost and Responsibilities

Cost and responsibility allocation must be confirmed by the managing organizational domain before this SBB is promoted from candidate to selected.

Cost

DescriptionUnitPrice
Platform or service capacityConsumption metric to be definedPricing model to be defined during service design

Additional Specifications

Cost attribution should support service, tenant, environment, and lifecycle reporting where the ABB exposes self-service consumption.

Responsibilities

Managing Party

The managing party operates the SBB baseline, lifecycle, access model, and integration contracts for the implemented ABBs.

Consuming Party

The consuming party owns workload intent, correct use of the exposed interfaces, data classification, and application-level configuration.

Roadmap and Lifecycle

Lifecycle

VersionDelivery start dateDelivery end dateExtended support candidate
DC 3.0 candidate baseline2026-05-30To be defined during reviewTo be assessed during service review

Roadmap

Development statusPlanFunctionality
CandidateConfirm architecture owner and service scopeABB implementation mapping
CandidateAdd operational constraints and support modelProduction readiness evidence

Architecture

Application functions:

ABBFunctionality
smart-accessImplements the Smart Access ABB in the DC 3.0 target model.
federated-authenticationImplements the Federated Authentication ABB in the DC 3.0 target model.

Dependencies:

SBBDependency description
No direct SBB dependency is recorded yet.Dependency analysis remains part of SBB review.

Technical Architecture

Keycloak realizes one or more DC 3.0 ABBs through a concrete product or managed-service pattern. The technical architecture must be expanded by the solution architect before selection.

Technical Documentation

Technical documentation is not attached in this migration pass. It should be linked when the SBB is promoted to selected.