Single Sign-On (SSO) ==================== This guide will walk you through setting up Keycloak for use with aurweb. For extensive documentation, see . Installing Keycloak ------------------- Keycloak is in the official Arch repositories: # pacman -S keycloak The default port is 8080, which conflicts with aurweb’s default port. You need to edit `/etc/keycloak/standalone.xml`, looking for this line: The default developer configuration assumes it is set to 8083. Alternatively, you may customize [options] aur_location and [sso] openid_configuration in `conf/config`. You may then start `keycloak.service` through systemd. See also ArchWiki . Configuring a realm ------------------- Go to and log in as administrator. Then, hover the text right below the Keycloak logo at the top left, by default *Master*. Click *Add realm* and name it *aurweb*. Open the *Clients* tab, and create a new *openid-connect* client. Call it *aurweb*, and set the root URL to (your aur_location). Create a user from the *Users* tab and try logging in from .