The Identity API from the original EOEPCA project allows creating and preconfiguring clients, users and other items in Keycloak in a simplified way. It was primarily used for initial configuration of API protection of BBs and as an API for constructing a test setup from a Jupyter Notebook.
It is planned to reuse the existing Notebooks where possible. Therefore it is useful to make the Identity API available in the IAM BB. To improve security, however, the IAM BB uses a limited user account instead of a full-featured admin account to access Keycloak.
The Identity API from the original EOEPCA project allows creating and preconfiguring clients, users and other items in Keycloak in a simplified way. It was primarily used for initial configuration of API protection of BBs and as an API for constructing a test setup from a Jupyter Notebook. It is planned to reuse the existing Notebooks where possible. Therefore it is useful to make the Identity API available in the IAM BB. To improve security, however, the IAM BB uses a limited user account instead of a full-featured admin account to access Keycloak.