> For the complete documentation index, see [llms.txt](https://docs.bdb.ai/administrative-settings-6/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.bdb.ai/administrative-settings-6/admin-panel-options/authentication/sso-configuration/keycloak.md).

# Keycloak

This page describes steps configuring the Keycloak for SSO configuration.

* Navigate to the SSO Configuration admin option using the Authentication options.
* Select the Keycloak option.
* Provide the following options:
  * SSO URL
  * Entity ID
  * Entity Descriptor
* Certificate File: Choose a certificate file.&#x20;
* Key File Upload: Choose a Key File certificate file.
* Click the ***Save*** option.&#x20;

  <figure><img src="https://content.gitbook.com/content/Mk60BIGZAzDsVCFExmXS/blobs/4yUmBrzXbg3VJhNmCCQc/image.png" alt=""><figcaption></figcaption></figure>
* A notification appears and the Keycloak option gets saved.&#x20;

  <figure><img src="https://content.gitbook.com/content/Mk60BIGZAzDsVCFExmXS/blobs/mBTnybMhQb0oa67Chhxd/image.png" alt=""><figcaption></figcaption></figure>

{% hint style="info" %}
*<mark style="color:green;">Please Note:</mark>  Please keep the following points in mind while working with* Keycloak.

* ***Group Deletion**: Groups deleted in Keycloak must also be manually removed from the Platform.*
* ***Group Renaming**: Rename groups only through the Platform.*
* ***User Removal from Group**: Users must be deleted in Keycloak and the Platform.*
* ***Certificate File Download**: Only admins have access to download certificate files.*
  {% endhint %}
