Keycloak
- The open source IAM solution
- Authorization server
- Supports the latest standard protocols
- User Authentication for applications
- SSO support (Single Sign On/Out)
- Fine–grained Authorization capabilities
- OpenID/SAML2.0 Identity Provider
- HA, Scalability, Multitenancy support
- Identity Brokering and Social Login
- User Federation support
- LDAP/Active Directory integration
- Customizable and extendable
- https://www.keycloak.org/
Architecture

Domain Model
