Kubernetes operator that manages Keycloak configurations
Details
- External ID
- 49273393
- Source
- HN
- Company
- —
- Product
- —
- Website domain
- —
- Launched
- Aug. 12, 2026
- Cohort
- —
- Upvotes
- 5
- Upvotes percentile
- 0.12634408602150538
- Tags
- —
- Fetched at
- Sept. 10, 2026, 5:32 a.m.
- Updated at
- Sept. 10, 2026, 5:32 a.m.
Description
We have finally open sourced our Keycloak config operator (I have yet to find a better name) that allows to manage your entire Keycloak configuration in a GitOps fashion through Kubernetes CRDs.Starting is easy, there is an export flow which allows you to export CRDs from your current configuration and then you can apply them as needed.The resources are deliberately raw JSON (I'd love to see a discussion on this) so that its compatible with a wide range of Keycloak versions out of the box.Heavily inspired by the now defunct keycloak realm operator.Feedback and suggestions for improvements are highly welcome.https://github.com/Hostzero-GmbH/keycloak-operator
Enrichment
- Theme
- self-hosted infrastructure and security tools
- Vertical
- Horizontal
- Function
- Dev tools
- Audience
- Developer
- AI stance
- Not AI
- Project type
- Commercial product
- Normalized one-liner
- kubernetes operator for keycloak
- Manually corrected
- False
Could you build this?
Partial Writing a basic Kubernetes controller is achievable, but an enterprise operator that manages full Keycloak configurations via CRDs requires deep understanding of Keycloak's extensive REST API, state synchronization, and Kubernetes controller paradigms.
What it would actually take: The operator would be written in Go using the `controller-runtime` / Kubebuilder framework, defining CRDs for Keycloak Realms, Clients, Users, and Roles. The difficult component is managing bidirectional reconciliation, schema migrations between Keycloak versions, handling idempotency, and securely exporting and diffing complex IAM configurations in GitOps workflows without causing authentication outages. This requires specialized knowledge of the Kubernetes control plane and deep Keycloak administration internals.
Discussion
No comments on this launch.
Competitors
Other products that read as similar to this one — 46 launches clear the similarity bar, closest 8 shown.
Attention rank: #41 of 47 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).
Launched 286 days after the earliest competitor.
- Renovate · hn · 2026-02-11 · 43 upvotes · similarity 0.54
- Multigres Kubernetes Operator · hn · 2026-03-30 · 7 upvotes · similarity 0.41
- SeaGit · ph · 2026-09-18 · 2 upvotes · similarity 0.40
- C# based Kubernetes Operator to deploy SurrealDB · hn · 2026-04-29 · 8 upvotes · similarity 0.39
- KeyEnv · hn · 2026-01-18 · 5 upvotes · similarity 0.39
- Hardened OpenClaw on AWS with Terraform · hn · 2026-03-13 · 10 upvotes · similarity 0.39
- GitHub · ph · 2026-09-11 · 2 upvotes · similarity 0.37
- Building a Cloud Native Kubernetes Java Client · hn · 2025-10-30 · 6 upvotes · similarity 0.37
Other launches for this product
- No other launches for this product.
Same idea, different domain
Nobody's really built a dev tools tool for Sales yet.