OAuth2 / OIDC
Using
With the move to microservices, authentication stopped being every service's own headache: access is managed centrally by Keycloak, and services speak OAuth2/OIDC — tokens, client flows, introspection. Our upgraded ADFS now speaks OAuth 2.0 too, and after the WS-Federation era with all its XML, today's OIDC feels noticeably simpler and more transparent: everything runs on JSON and redirects that actually make sense.