Deploying SMS & Email Multi-Factor Authentication in Keycloak with Docker Compose and Terraform
Deploying SMS & Email Multi-Factor Authentication in Keycloak with Docker Compose and Terraform
In this one-hour workshop, we will build a complete platform enabling SMS OTP and Email OTP authentication in Keycloak, two authentication factors that are not available natively. Participants will deploy the entire stack using Docker Compose (Keycloak, PostgreSQL, MailHog, Grafana, Prometheus, and Tempo) and automate its configuration with Terraform. We will explore how to integrate custom SPIs, create conditional authentication flows, and manage user enrollment. Through hands-on demonstrations, attendees will validate end-to-end SMS and Email authentication journeys in a fully self-contained simulation environment with no external dependencies. Finally, we will leverage observability tools to trace and troubleshoot MFA authentication flows. The workshop is practical, reproducible, and can be completed with only a few commands.
Prerequisites
- Docker installed
- Docker Compose installed
- Terraform ≥ 1.5 installed
- Basic knowledge of containers and Infrastructure as Code concepts
Please ensure Docker, Docker Compose, and Terraform are installed and operational on your workstation before attending the workshop.
Christophe is a Security Engineer specializing in HTTP and application security, with expertise in WAFs, SSO, HTTPS/TLS, API gateways, and AppSec.
He is a strong supporter of open-source software and open standards, leveraging them to build secure, scalable, and automated platforms.
Beyond cybersecurity, he is passionate about mathematics, physics, and alternative cosmological models.
