{"id":27028,"date":"2023-03-17T04:25:22","date_gmt":"2023-10-07T10:22:21","guid":{"rendered":"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/"},"modified":"2025-08-12T00:23:08","modified_gmt":"2025-08-11T16:23:08","slug":"%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89","status":"publish","type":"post","link":"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/","title":{"rendered":"\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09"},"content":{"rendered":"<h1>\u4eca\u5929\u8981\u505a\u7684\u4e8b\u60c5 zu\u00f2 de sh\u00ec\u672c\u6b21Keycloak Advent Calendar\u7684\u7b2c\u56db\u5929\uff0c\u6211\u4eec\u5c06\u5c1d\u8bd5\u4f7f\u7528SAML\u5c06Keycloak\u548cWordPress\u8fdb\u884c\u96c6\u6210\u3002\u5728Keycloak\u7684\u6587\u6863&#8221; SAML VS OIDC &#8220;\u4e2d\uff0c\u63a8\u8350\u4f7f\u7528OIDC\u800c\u4e0d\u662fSAML\uff0c\u4f46\u662f\u7531\u4e8eSAML\u5df2\u7ecf\u6709\u4e86\u5b9e\u8df5\u7ecf\u9a8c\u5e76\u4e14\u66f4\u52a0\u6210\u719f\uff0c\u8bb8\u591a\u7cfb\u7edf\u90fd\u91c7\u7528\u4e86\u5b83\u3002\u5728Keycloak\u4e2d\uff0cSAML2.0\u548cOIDC\u90fd\u53ef\u4ee5\u4f5c\u4e3aSSO\u8ba4\u8bc1\u534f\u8bae\u8fdb\u884c\u4f7f\u7528\u3002\u5728\u53ef\u7528\u7684SSO\u8ba4\u8bc1\u534f\u8bae\u4e2d\uff0c\u6211\u4eec\u8fd9\u6b21\u5c06\u5c1d\u8bd5SAML\u8ba4\u8bc1\u96c6\u6210\u3002<\/p>\n<h1>SAML\u7684\u6982\u8ff0SAML\u662f\u201c\u5b89\u5168\u65ad\u8a00\u6807\u8bb0\u8bed\u8a00\u201d\u7684\u7f29\u5199\u3002\u5b83\u662f\u7531OASIS\uff08\u7ed3\u6784\u5316\u4fe1\u606f\u6807\u51c6\u63a8\u52a8\u534f\u4f1a\uff09\u5236\u5b9a\u7684\u57fa\u4e8eXML\u7684\u6807\u8bb0\u8bed\u8a00\u89c4\u8303\uff0c\u7528\u4e8e\u5728\u4e0d\u540c\u57df\u7684\u7cfb\u7edf\u4e4b\u95f4\u5b89\u5168\u4f20\u8f93\u8ba4\u8bc1\u548c\u6388\u6743\u4fe1\u606f\u3002\u5728\u5404\u79cd\u670d\u52a1\u4e2d\u90fd\u4f7f\u7528\u4e86\u57fa\u4e8eSAML\u7684\u8ba4\u8bc1\u534f\u4f5c\u3002<\/p>\n<h1>\u7528\u4e8e\u9a8c\u8bc1\u52a8\u4f5c\u7684\u670d\u52a1\u5668\u914d\u7f6e\u5728WordPress\u4e2d\u6709\u51e0\u4e2a\u7528\u4e8eSAML\u7684\u63d2\u4ef6\uff0c\u4f46\u8fd9\u6b21\u6211\u4eec\u5c06\u4f7f\u7528WordPress + OneLogin SAML SSO\u63d2\u4ef6\u6765\u786e\u8ba4\u4e0eKeycloak\u7684SAML\u96c6\u6210\u3002\u6211\u4eec\u51c6\u5907\u4e86\u4e00\u4e2a\u7528\u4e8e\u6d4b\u8bd5\u7684\u670d\u52a1\u5668\u5982\u4e0b\u6240\u793a\u3002Keycloak\u662f\u8eab\u4efd\u670d\u52a1\u63d0\u4f9b\u5546\uff08IdP\uff09\uff0cWordPress\u662f\u670d\u52a1\u63d0\u4f9b\u5546\uff08SP\uff09\u3002<\/p>\n<div>\n<div class=\"post-table\">FQDNOSJDK\u69cb\u6210keycloak.example.comCentOS7.1open-jdk 1.8.0_101Keycloak 3.3.0Finalwordpress.example.comCentOS7.1<br \/>\nWordpress + OneLogin SAML SSO\u30d7\u30e9\u30b0\u30a4\u30f3\u8bf7\u5728Keycloak 2\u65e5\u76ee\u7684KeycloakAdventCalendar\u6587\u7ae0\u4e2d\u67e5\u770bKeycloak\u7684\u8bbe\u7f6e\u3002\u6b64\u5916\uff0c\u8bf7\u53c2\u9605\u8fd9\u7bc7\u6587\u7ae0\u4ee5\u8fdb\u884cWordpress\u7684\u8bbe\u7f6e\u3002\u8bf7\u6ce8\u610f\uff0cWordpress\u5c1a\u672a\u672c\u5730\u5316\u4e3a\u65e5\u8bed\uff0c\u8bf7\u77e5\u6089\u3002<\/p>\n<h1>Keycloak\u670d\u52a1\u5668\uff08IdP\uff09\u7684\u914d\u7f6e\u8bbe\u5b9a\u3002\u8bf7\u7ba1\u7406\u5458\u7528\u6237\u767b\u5f55\u5e76\u6309\u7167\u4ee5\u4e0b\u6b65\u9aa4\u6267\u884c\u3002<\/p>\n<div>\n<div class=\"post-table\"><img loading=\"lazy\" decoding=\"async\" class=\"emoji\" title=\":information_source:\" src=\"https:\/\/cdn.qiita.com\/emoji\/twemoji\/unicode\/2139-fe0f.png\" alt=\":information_source:\" width=\"20\" height=\"20\" \/> \u4ee5\u964d\u306e\u624b\u9806\u306b\u304a\u3044\u3066\u3001\u8a2d\u5b9a\u306e\u5165\u529b\u9805\u76ee\u304c\u8a18\u8ff0\u3055\u308c\u3066\u3044\u306a\u3044\u9805\u76ee\u306f\u3001\u30c7\u30d5\u30a9\u30eb\u30c8\u5024\u3067\u8a2d\u5b9a\u3057\u307e\u3059\u3002<\/p>\n<h2>\u65b0\u589e\u9886\u57df\u4ece\u753b\u9762\u5de6\u4e0a\u89d2\u7684\u300c\u9009\u62e9\u9886\u57df\u300d\u83dc\u5355\u4e2d\u70b9\u51fb\u300c\u6dfb\u52a0\u9886\u57df\u300d\u6309\u94ae\u3002\u6309\u7167\u4ee5\u4e0b\u6b65\u9aa4\u521b\u5efa\u9886\u57df\u3002<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">\u540d\u524d : wordpress<\/ul>\n<\/li>\n<\/ul>\n<p>\u6709\u52b9 : \u30aa\u30f3<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/14-0.png\" alt=\"realm1.png\" \/><\/p>\n<h2>\u6dfb\u52a0\u548c\u914d\u7f6e\u5ba2\u6237\u7aef<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/16-0.png\" alt=\"client1.png\" \/>\u203b \u5982\u679c\u5728\u521b\u5efa\u5ba2\u6237\u7aef\u65f6\u9ed8\u8ba4\u4f7f\u7528role list\u6620\u5c04\u5668\uff0c\u4f1a\u5bfc\u81f4OneLoginSSO\u7aef\u51fa\u73b0\u9519\u8bef\u3002\u8bf7\u5220\u9664role list\u6620\u5c04\u6216\u5728role list\u7f16\u8f91\u4e2d\u5c06Single Role Attribute\u6539\u4e3aON\u3002<\/p>\n<h2>\u4eceSAML\u5bc6\u94a5\u6807\u7b7e\u4e2d\u83b7\u53d6\u5bc6\u94a5\u4fe1\u606f\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/19-0.png\" alt=\"saml-key.png\" \/><\/p>\n<h2>\u6dfb\u52a0\u7528\u6237\u5230Keycloak\u5411\u521b\u5efa\u7684\u9886\u57df\u6dfb\u52a0\u7528\u6237\u3002<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u767b\u5f55\u5230\u7ba1\u7406\u63a7\u5236\u53f0\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u9009\u62e9WordPress\u9886\u57df\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u70b9\u51fb\u201c\u7ba1\u7406\u201d-\u201c\u7528\u6237\u201d\u83dc\u5355\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u70b9\u51fb\u201c\u6dfb\u52a0\u7528\u6237\u201d\u6309\u94ae\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u6309\u4ee5\u4e0b\u8f93\u5165\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u7528\u6237\u540d\uff1awp-user1<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u7535\u5b50\u90ae\u4ef6\uff1awp-user1@example.com<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u7528\u6237\u6709\u6548\uff1a\u5f00\u542f<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u70b9\u51fb\u201c\u4fdd\u5b58\u201d\u6309\u94ae\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u5728\u521b\u5efa\u7684\u7528\u6237\u7684\u201c\u51ed\u8bc1\u201d\u9009\u9879\u5361\u4e2d\u8bbe\u7f6e\u5bc6\u7801\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u5728\u201c\u65b0\u5bc6\u7801\u201d\u548c\u201c\u786e\u8ba4\u65b0\u5bc6\u7801\u201d\u5b57\u6bb5\u4e2d\u8f93\u5165\u76f8\u540c\u7684\u5bc6\u7801\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u5c06\u201c\u4e34\u65f6\u201d\u9009\u9879\u5173\u95ed\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u70b9\u51fb\u201c\u91cd\u7f6e\u5bc6\u7801\u201d\u6309\u94ae\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\u5f39\u51fa\u786e\u8ba4\u7a97\u53e3\u540e\uff0c\u70b9\u51fb\u201c\u66f4\u6539\u5bc6\u7801\u201d\u6309\u94ae\u3002<\/ol>\n<p>\u5bc6\u7801\u66f4\u6539\u786e\u8ba4\u5f39\u51fa\u7a97\u53e3\u5c1a\u672a\u65e5\u8bed\u5316\uff0c\u4f46\u4ee5\u4e0a\u64cd\u4f5c\u5df2\u5b8c\u6210\u7528\u6237\u7684\u6dfb\u52a0\u3002<\/p>\n<h1>WordPress\u670d\u52a1\u5668(SP)\u7684\u8bbe\u7f6e<\/p>\n<h2>\u5b89\u88c5 SSO \u63d2\u4ef6\u6765\u4f7f\u7528 SAML\u3002<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u4e0b\u8f7d\u63d2\u4ef6<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>OneLogin SAML SSO \u63d2\u4ef6<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u5728WordPress\u4e2d\u6dfb\u52a0\u63d2\u4ef6\u3002<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u4eceWordPress\u7ba1\u7406\u63a7\u5236\u53f0\u70b9\u51fb\u300c\u63d2\u4ef6\u300d\u83dc\u5355<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u70b9\u51fb\u300c\u6dfb\u52a0\u65b0\u7684\u300d\u6309\u94ae<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u70b9\u51fb\u300c\u4e0a\u4f20\u63d2\u4ef6\u300d\u6309\u94ae<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u4ece\u300c\u6d4f\u89c8\u300d\u4e2d\u9009\u62e9\u4e0b\u8f7d\u7684\u63d2\u4ef6\uff0c\u7136\u540e\u70b9\u51fb\u300c\u7acb\u5373\u5b89\u88c5\u300d<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\u6fc0\u6d3b\u6dfb\u52a0\u7684\u63d2\u4ef6\uff08\u70b9\u51fb\u201c\u6fc0\u6d3b\u201d\u6309\u94ae\uff09<\/ol>\n<p>\u63d2\u4ef6\u5b89\u88c5\u5df2\u5b8c\u6210\u3002<\/p>\n<h2>\u4f7f\u7528SSO\u63d2\u4ef6\u914d\u7f6eSAML\u3002<br \/>\n\u63d2\u4ef6\u7684\u914d\u7f6e\u9700\u8981IdP\u7684\u4fe1\u606f\u3002\u8bbf\u95eeKeycloak\u7684SAML\u4fe1\u606f\u7ec8\u70b9\u4ee5\u83b7\u53d6\u4fe1\u606f\u3002\u8bbf\u95eehttps:\/\/keycloak.example.com\/auth\/realms\/wordpress\/protocol\/saml\/descriptor\u65f6\uff0c\u53ef\u4ee5\u83b7\u53d6\u5230\u4ee5\u4e0bXML\u6587\u4ef6\u3002<\/p>\n<pre class=\"post-pre\"><code>&lt;?xml version=\"1.0\" encoding=\"UTF-8\"?&gt;\r\n&lt;EntitiesDescriptor Name=\"urn:keycloak\" xmlns=\"urn:oasis:names:tc:SAML:2.0:metadata\" xmlns:dsig=\"http:\/\/www.w3.org\/2000\/09\/xmldsig#\"&gt;\r\n    &lt;EntityDescriptor entityID=\"https:\/\/keycloak.example.com\/auth\/realms\/wordpress\"&gt;\r\n        &lt;IDPSSODescriptor WantAuthnRequestsSigned=\"true\" protocolSupportEnumeration=\"urn:oasis:names:tc:SAML:2.0:protocol\"&gt;\r\n                        &lt;KeyDescriptor use=\"signing\"&gt;\r\n                          &lt;dsig:KeyInfo&gt;\r\n                            &lt;dsig:KeyName&gt;xdyS...HLxc&lt;\/dsig:KeyName&gt;\r\n                            &lt;dsig:X509Data&gt;\r\n                              &lt;dsig:X509Certificate&gt;MIICnT...RXx3Aw==&lt;\/dsig:X509Certificate&gt;\r\n                            &lt;\/dsig:X509Data&gt;\r\n                          &lt;\/dsig:KeyInfo&gt;\r\n                        &lt;\/KeyDescriptor&gt;\r\n\r\n            &lt;SingleLogoutService Binding=\"urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST\" Location=\"https:\/\/keycloak.example.com\/auth\/realms\/wordpress\/protocol\/saml\"\/&gt;\r\n            &lt;SingleLogoutService Binding=\"urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect\" Location=\"https:\/\/keycloak.example.com\/auth\/realms\/wordpress\/protocol\/saml\"\/&gt;\r\n            &lt;NameIDFormat&gt;urn:oasis:names:tc:SAML:2.0:nameid-format:persistent&lt;\/NameIDFormat&gt;\r\n            &lt;NameIDFormat&gt;urn:oasis:names:tc:SAML:2.0:nameid-format:transient&lt;\/NameIDFormat&gt;\r\n            &lt;NameIDFormat&gt;urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified&lt;\/NameIDFormat&gt;\r\n            &lt;NameIDFormat&gt;urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress&lt;\/NameIDFormat&gt;\r\n            &lt;SingleSignOnService Binding=\"urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST\" Location=\"https:\/\/keycloak.example.com\/auth\/realms\/wordpress\/protocol\/saml\"\/&gt;\r\n            &lt;SingleSignOnService Binding=\"urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect\" Location=\"https:\/\/keycloak.example.com\/auth\/realms\/wordpress\/protocol\/saml\"\/&gt;\r\n            &lt;SingleSignOnService Binding=\"urn:oasis:names:tc:SAML:2.0:bindings:SOAP\" Location=\"https:\/\/keycloak.example.com\/auth\/realms\/wordpress\/protocol\/saml\"\/&gt;\r\n        &lt;\/IDPSSODescriptor&gt;\r\n    &lt;\/EntityDescriptor&gt;\r\n&lt;\/EntitiesDescriptor&gt;\r\n<\/code><\/pre>\n<div>\n<div class=\"post-table\"><img loading=\"lazy\" decoding=\"async\" class=\"emoji\" title=\":warning:\" src=\"https:\/\/cdn.qiita.com\/emoji\/twemoji\/unicode\/26a0-fe0f.png\" alt=\":warning:\" width=\"20\" height=\"20\" \/> \u4e0a\u8a18XML\u4e2d\u306e\u79d8\u5bc6\u9375\u3084\u8a3c\u660e\u66f8\u6587\u5b57\u5217\u306f\u3001\u9577\u3044\u305f\u3081\u7701\u7565\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/32-3.png\" alt=\"wordpress-plugin-setting-cut4.png\" \/><\/p>\n<div>\n<div class=\"post-table\"><img loading=\"lazy\" decoding=\"async\" class=\"emoji\" title=\":warning:\" src=\"https:\/\/cdn.qiita.com\/emoji\/twemoji\/unicode\/26a0-fe0f.png\" alt=\":warning:\" width=\"20\" height=\"20\" \/> <b>(\u6ce81) \u8a3c\u660e\u66f8\u3084\u79d8\u5bc6\u9375\u9805\u76ee\u3067\u306f\u3001\u4ee5\u4e0b\u306e\u3088\u3046\u306b <code>BEGIN<\/code>\/<code>END<\/code> \u306e\u5ba3\u8a00\u3092\u8a18\u8ff0\u3057\u306a\u3051\u308c\u3070\u306a\u308a\u307e\u305b\u3093\u3002<\/b><\/p>\n<pre class=\"post-pre\"><code>-----BEGIN CERTIFICATE-----\r\n\u8a3c\u660e\u66f8\u6587\u5b57\u5217  \r\n-----END CERTIFICATE-----  \r\n\r\n-----BEGIN RSA PRIVATE KEY-----  \r\n\u79d8\u5bc6\u9375\u6587\u5b57\u5217  \r\n-----END RSA PRIVATE KEY-----  \r\n<\/code><\/pre>\n<p>\u8fd9\u6837\u5c31\u5b8c\u6210\u4e86\u63d2\u4ef6\u8bbe\u7f6e\u3002<\/p>\n<h2>\u6dfb\u52a0WordPress\u7528\u6237\u6211\u8981\u5728WordPress\u4e0a\u6dfb\u52a0\u7528\u6237\u3002<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u4ecewordpress\u7ba1\u7406\u63a7\u5236\u53f0\u4e2d\u70b9\u51fb\u201c\u7528\u6237\u201d\u83dc\u5355<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u70b9\u51fb\u201c\u6dfb\u52a0\u65b0\u7528\u6237\u201d\u6309\u94ae<\/ol>\n<\/li>\n<\/ol>\n<p>&nbsp;<\/p>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\u6dfb\u52a0\u4ee5\u4e0b\u7528\u6237:<\/ol>\n<\/li>\n<\/ol>\n<p>wp-user1<\/p>\n<p>\u7528\u6237\u540d : wp-user1<\/p>\n<p>\u90ae\u7bb1 : wp-user1@example.com<\/p>\n<p>\u53d1\u9001\u7528\u6237\u901a\u77e5 : \u5173\u95ed<br \/>\n\u9664\u4e0a\u8ff0\u8bbe\u7f6e\u5916\uff0c\u5176\u4ed6\u90fd\u662f\u9ed8\u8ba4\u8bbe\u7f6e(\u672a\u8bbe\u5b9a\u3001\u5173\u95ed)\u3002<\/p>\n<p>\u70b9\u51fb\u201c\u6dfb\u52a0\u65b0\u7528\u6237\u201d\u6309\u94ae\u3002<\/p>\n<h1>\u786e\u8ba4\u52a8\u4f5c<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/40-0.png\" alt=\"keycloak-saml-login2.png\" \/><\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/41-0.png\" alt=\"login-success.png\" \/><\/p>\n<h1>\u5373\u65f6\u63d0\u4f9b\uff08\u5373\u65f6\u4f9b\u5e94\uff09\u7684JIT\uff08Just In Time\uff09\u914d\u7f6e\u5373\u65f6\u670d\u52a1\u63d0\u4f9b\uff08JIT\uff09\u662f\u6307\u5728SP\u7aef\u6ca1\u6709\u7528\u6237\u5b58\u5728\u65f6\uff0c\u6839\u636eIdP\u7684\u7528\u6237\u4fe1\u606f\u548c\u5c5e\u6027\u6620\u5c04\u5c06\u7528\u6237\u7684\u4fe1\u606f\u4e0eSP\u8fdb\u884c\u534f\u4f5c\uff0c\u4ee5\u521b\u5efa\u548c\u8bbe\u7f6e\u7528\u6237\u7684\u529f\u80fd\u3002 JIT\u63d0\u4f9b\u5fc5\u987b\u6b63\u786e\u8bbe\u7f6e\u5c5e\u6027\u6620\u5c04\uff0c\u4f46\u5b83\u5177\u6709\u65e0\u9700\u9010\u4e2a\u670d\u52a1\u8fdb\u884c\u7528\u6237\u7ba1\u7406\u7684\u4f18\u70b9\u3002<\/p>\n<p>\u5728WordPress\u7684&#8221;SSO\/SAML\u8bbe\u7f6e&#8221;\u4e2d\uff0c\u52fe\u9009&#8221;\u5982\u679c\u7528\u6237\u4e0d\u5b58\u5728\u5219\u521b\u5efa\u7528\u6237&#8221;\u9009\u9879\u3002\u5982\u679cKeycloak\u7aef\u66f4\u6539\u4e86\u7528\u6237\u5c5e\u6027\u5e76\u4e14\u60f3\u8981\u5c06\u66f4\u6539\u540c\u6b65\u5230WordPress\uff0c\u5219\u52fe\u9009&#8221;\u66f4\u65b0\u7528\u6237\u6570\u636e&#8221;\u9009\u9879\u3002<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/45-0.png\" alt=\"user-add1.png\" \/>\u8ba9\u6211\u4eec\u5728Keycloak\u4e2d\u521b\u5efa\u4ee5\u4e0b\u7528\u6237\uff0c\u7136\u540e\u8fdb\u884c\u6d4b\u8bd5\u3002<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">\u30e6\u30fc\u30b6\u30fc\u540d : wp-user2<\/ul>\n<\/li>\n<\/ul>\n<p>E\u30e1\u30fc\u30eb : wp-user2@example.com<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/48-0.png\" alt=\"user-add2.png\" \/><\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/49-0.png\" alt=\"user-add3.png\" \/><\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/50-0.png\" alt=\"user-add4.png\" \/><\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/51-0.png\" alt=\"user-add5.png\" \/><\/p>\n<h1>\u6982\u62ec<\/p>\n<div><img decoding=\"async\" class=\"post-images\" title=\"\" src=\"https:\/\/cdn.silicloud.com\/blog-img\/blog\/img\/657cf3cc37434c4406ba693e\/53-0.png\" alt=\"SAML_new2.png\" \/>\u975e\u5e38\u611f\u8c22\u4f60\u3002<\/p>\n<h1>\u53c2\u8003\u8d44\u6599-<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">SAML | Keycloak Documentation<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">NRI OpenStandia Keycloak\u65e5\u672c\u8a9e\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8 | SAML<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">\n<li style=\"list-style-type: none;\">\n<ul class=\"post-ul\">WordPress<\/ul>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<ul class=\"post-ul\">OneLogin SAML SSO<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u4eca\u5929\u8981\u505a\u7684\u4e8b\u60c5 zu\u00f2 de sh\u00ec\u672c\u6b21Keycloak Advent Calendar\u7684\u7b2c\u56db\u5929\uff0c\u6211\u4eec\u5c06\u5c1d\u8bd5\u4f7f [&hellip;]<\/p>\n","protected":false},"author":8,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[227],"class_list":["post-27028","post","type-post","status-publish","format-standard","hentry","category-uncategorized","tag-227"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v21.5 (Yoast SEO v21.5) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09 - Blog - Silicon Cloud<\/title>\n<meta name=\"description\" content=\"\u5173\u4e8e\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09\u7684\u6280\u672f\u6587\u7ae0\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.silicloud.com\/zh\/blog\/\u5c1d\u8bd5\u4f7f\u7528keycloak\u7684saml\uff08wordpress\u7248\uff09\/\" \/>\n<meta property=\"og:locale\" content=\"zh_CN\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09\" \/>\n<meta property=\"og:description\" content=\"\u5173\u4e8e\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09\u7684\u6280\u672f\u6587\u7ae0\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.silicloud.com\/zh\/blog\/\u5c1d\u8bd5\u4f7f\u7528keycloak\u7684saml\uff08wordpress\u7248\uff09\/\" \/>\n<meta property=\"og:site_name\" content=\"Blog - Silicon Cloud\" \/>\n<meta property=\"article:published_time\" content=\"2023-10-07T10:22:21+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-08-11T16:23:08+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cdn.qiita.com\/emoji\/twemoji\/unicode\/2139-fe0f.png\" \/>\n<meta name=\"author\" content=\"\u96c5, \u609f\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"\u96c5, \u609f\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 \u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/\",\"name\":\"\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09 - Blog - Silicon Cloud\",\"isPartOf\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\"},\"datePublished\":\"2023-10-07T10:22:21+00:00\",\"dateModified\":\"2025-08-11T16:23:08+00:00\",\"author\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6\"},\"description\":\"\u5173\u4e8e\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09\u7684\u6280\u672f\u6587\u7ae0\",\"breadcrumb\":{\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/#breadcrumb\"},\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u9996\u9875\",\"item\":\"https:\/\/www.silicloud.com\/zh\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#website\",\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/\",\"name\":\"Blog - Silicon Cloud\",\"description\":\"\",\"inLanguage\":\"zh-Hans\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6\",\"name\":\"\u96c5, \u609f\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g\",\"caption\":\"\u96c5, \u609f\"},\"url\":\"https:\/\/www.silicloud.com\/zh\/blog\/author\/yawu\/\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/#local-main-organization-logo\",\"url\":\"\",\"contentUrl\":\"\",\"caption\":\"Blog - Silicon Cloud\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09 - Blog - Silicon Cloud","description":"\u5173\u4e8e\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09\u7684\u6280\u672f\u6587\u7ae0","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.silicloud.com\/zh\/blog\/\u5c1d\u8bd5\u4f7f\u7528keycloak\u7684saml\uff08wordpress\u7248\uff09\/","og_locale":"zh_CN","og_type":"article","og_title":"\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09","og_description":"\u5173\u4e8e\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09\u7684\u6280\u672f\u6587\u7ae0","og_url":"https:\/\/www.silicloud.com\/zh\/blog\/\u5c1d\u8bd5\u4f7f\u7528keycloak\u7684saml\uff08wordpress\u7248\uff09\/","og_site_name":"Blog - Silicon Cloud","article_published_time":"2023-10-07T10:22:21+00:00","article_modified_time":"2025-08-11T16:23:08+00:00","og_image":[{"url":"https:\/\/cdn.qiita.com\/emoji\/twemoji\/unicode\/2139-fe0f.png"}],"author":"\u96c5, \u609f","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005":"\u96c5, \u609f","\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4":"4 \u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/","url":"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/","name":"\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09 - Blog - Silicon Cloud","isPartOf":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website"},"datePublished":"2023-10-07T10:22:21+00:00","dateModified":"2025-08-11T16:23:08+00:00","author":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6"},"description":"\u5173\u4e8e\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09\u7684\u6280\u672f\u6587\u7ae0","breadcrumb":{"@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/#breadcrumb"},"inLanguage":"zh-Hans","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u9996\u9875","item":"https:\/\/www.silicloud.com\/zh\/blog\/"},{"@type":"ListItem","position":2,"name":"\u5c1d\u8bd5\u4f7f\u7528Keycloak\u7684SAML\uff08WordPress\u7248\uff09"}]},{"@type":"WebSite","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#website","url":"https:\/\/www.silicloud.com\/zh\/blog\/","name":"Blog - Silicon Cloud","description":"","inLanguage":"zh-Hans"},{"@type":"Person","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/f044a4b7fa4ee2701702942002419ca6","name":"\u96c5, \u609f","image":{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/e71a913e914f1aad1efc391f92084294bac54bc782acd289638580134cf667a6?s=96&d=mm&r=g","caption":"\u96c5, \u609f"},"url":"https:\/\/www.silicloud.com\/zh\/blog\/author\/yawu\/"},{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.silicloud.com\/zh\/blog\/%e5%b0%9d%e8%af%95%e4%bd%bf%e7%94%a8keycloak%e7%9a%84saml%ef%bc%88wordpress%e7%89%88%ef%bc%89\/#local-main-organization-logo","url":"","contentUrl":"","caption":"Blog - Silicon Cloud"}]}},"_links":{"self":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/27028","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/comments?post=27028"}],"version-history":[{"count":3,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/27028\/revisions"}],"predecessor-version":[{"id":111061,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/posts\/27028\/revisions\/111061"}],"wp:attachment":[{"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/media?parent=27028"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/categories?post=27028"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.silicloud.com\/zh\/blog\/wp-json\/wp\/v2\/tags?post=27028"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}