Securely Migrating Password Hash Algorithms in Keycloak
Issue
If a vulnerability is discovered in the password hash algorithm used by Keycloak, how can we migrate to a more secure algorithm without forcing users to re-register their passwords?
Environment
- Red Hat build of Keycloak 26
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.