WildFly Elytron

WildFly Elytron Credential Store APIs

This blog post demonstrates the WildFly Elytron credential store APIs.

Using Elytron certificate-based authentication with authorization

This blog post describes how to secure a web application deployed to WildFly using the CLIENT_CERT HTTP authentication mechanism with two-way SSL and authorization.

WildFly Elytron Aggregation of Attributes

This blog describes the upcoming attribute aggregation feature.

Security Features for WildFly 18

An overview of the new security features that are being planned for WildFly 18.

Security Feature Development for WildFly 17

An update on the security feature development during WildFly 17.

Web Services client and RESTEasy client integration with WildFly Elytron

An overview of the upcoming Elytron integration with Web Services and RESTEasy on the client side.

Upcoming support for TLS 1.3 with WildFly

A quick introduction to the upcoming support for TLS 1.3 in WildFly.

Configuring a JDBC Security Realm with BCrypt and Modular Crypt Password Mappers

This blog post shows how to generate BCrypt passwords with different encodings and loading BCrypt and modular crypt passwords using a JDBC security realm in WildFly Elytron.

Obtain and manage certificates from any server instance that implements ACME specification using the WildFly CLI

This blog post describes the upcoming feature that allows to configure other ACME certificate authorities than Let's Encrypt for obtaining and managing of certificates.

Mapping an X.509 certificate chain to an identity using a subject alternative name

An introduction on how we are enhancing the mapping of an X.509 certificate to an underlying identity.

Enhanced Audit Logging in WildFly Elytron - RFC Support and Reliabiliity/Speed Customization

An update on the audit logging enhancements of additional RFC support and reliability vs speed customization that is being added to WildFly Elytron.