12 Commits

Author SHA1 Message Date
7be998a4bf Merge pull request #6 from mwllgr/master
Upgrade to Keycloak 22.0.5
2023-11-09 09:05:59 +01:00
47acd5b828 Add building instructions to README 2023-11-06 23:53:29 +01:00
78d30a1ad9 Update to Java 17 for Keycloak 22, release 1.0.1 2023-11-06 23:47:22 +01:00
e1c5358b82 Update used dependency for Keycloak v22 2023-11-06 23:46:49 +01:00
4ce3f58ad2 Update README.md 2023-04-10 13:29:38 +02:00
7bbd3d3a57 Merge pull request #3 from mwllgr/patch-1
Upgrade to Keycloak 21.0.1
2023-03-10 10:30:06 +01:00
a72db7659e Switch to Keycloak 21.0.1 in pom.xml 2023-03-05 21:37:56 +01:00
8590495a05 Merge pull request #2 from jwausle/master
Upgrade to keycloak 19.0.1 (quarkus)
2022-11-15 17:36:33 +01:00
5464dcd925 Upgrade to keycloak 19.0.1 (quarkus) 2022-09-07 19:59:44 +02:00
38d3d3d521 Merge pull request #1 from Furentes/dependabot/maven/org.keycloak-keycloak-services-15.1.1
build(deps): Bump keycloak-services from 15.0.2 to 15.1.1
2022-03-16 09:45:29 +01:00
74cb564ab9 build(deps): Bump keycloak-services from 15.0.2 to 15.1.1
Bumps [keycloak-services](https://github.com/keycloak/keycloak) from 15.0.2 to 15.1.1.
- [Release notes](https://github.com/keycloak/keycloak/releases)
- [Commits](https://github.com/keycloak/keycloak/compare/15.0.2...15.1.1)

---
updated-dependencies:
- dependency-name: org.keycloak:keycloak-services
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
2022-01-20 10:07:57 +00:00
42f5a2318e style: 🎨 Fixed indentation
Mixed indentation from eclipse fixed by chaning all from tabs to spaces
2021-09-03 08:23:27 +02:00
3 changed files with 153 additions and 113 deletions

View File

@ -1,10 +1,12 @@
# keycloak-hcaptcha # keycloak-hcaptcha
> I am currently not adding any new features, updates or fixes. Feel free to open a PR!
To safeguard registration against bots, Keycloak has integration with Google reCAPTCHA. This provides similar functionality, but with a more privacy friendly provider named hCaptcha. The code is based on the vanilla implementation of reCAPTCHA in Keycloak. To safeguard registration against bots, Keycloak has integration with Google reCAPTCHA. This provides similar functionality, but with a more privacy friendly provider named hCaptcha. The code is based on the vanilla implementation of reCAPTCHA in Keycloak.
## Installation ## Installation
Download the newest release JAR (or comile it yourself) and drop it into `your_keycloak_installation/standalone/deployments` Download the newest release JAR (or compile it yourself - see below) and drop it into `your_keycloak_installation/providers`
There are a few steps you need to perform in the Keycloak Admin Console. Click the Authentication left menu item and go to the Flows tab. Select the Registration flow from the drop down list on this page. There are a few steps you need to perform in the Keycloak Admin Console. Click the Authentication left menu item and go to the Flows tab. Select the Registration flow from the drop down list on this page.
@ -26,7 +28,7 @@ Authorizing Iframes
To show the hCaptcha you need to modify the registration template. You can find the files in your Keycloak installation under `themes/base/login/`. If you use the user profile preview (you start your Keycloak with the `-Dkeycloak.profile=preview` flag), you need to edit the `register-user-profile.ftl`, else the `register.ftl`. Add the following code beneith the reCaptcha code: To show the hCaptcha you need to modify the registration template. You can find the files in your Keycloak installation under `themes/base/login/`. If you use the user profile preview (you start your Keycloak with the `-Dkeycloak.profile=preview` flag), you need to edit the `register-user-profile.ftl`, else the `register.ftl`. Add the following code beneith the reCaptcha code:
``` ```html
<#if hcaptchaRequired??> <#if hcaptchaRequired??>
<div class="form-group"> <div class="form-group">
<div class="${properties.kcInputWrapperClass!}"> <div class="${properties.kcInputWrapperClass!}">
@ -44,5 +46,25 @@ In the last step you have to change the registration flow to the newly created o
Authentication Bindings Authentication Bindings
![Step 6](img/step-06.png) ![Step 6](img/step-06.png)
## Compiling it yourself
Clone the repository:
```bash
git clone https://github.com/p08dev/keycloak-hcaptcha.git
```
Inside the repository, compile it using Maven with Java 17:
```bash
mvn clean compile package
```
You can instruct Maven to use a specific Java version by prepending the JAVA_HOME environment variable:
```bash
JAVA_HOME=/usr/lib/jvm/java-17-oracle/ mvn clean compile package
```
## © License ## © License
[MIT](LICENSE) [MIT](LICENSE)

74
pom.xml
View File

@ -2,43 +2,61 @@
<modelVersion>4.0.0</modelVersion> <modelVersion>4.0.0</modelVersion>
<groupId>de.itrupp.p8</groupId> <groupId>de.itrupp.p8</groupId>
<artifactId>keycloak-hcaptcha</artifactId> <artifactId>keycloak-hcaptcha</artifactId>
<version>1.0.0</version> <version>1.0.1</version>
<name>Registration Authenitcation Execution Provider for hCaptcha</name> <name>Registration Authenitcation Execution Provider for hCaptcha</name>
<description>hCaptcha protects your users' privacy, rewards websites and helps businesses annotate their data. It's a 'drop in' replacement for reCAPTCHA that you set up in minutes.</description> <description>hCaptcha protects your users' privacy, rewards websites and helps businesses annotate their data. It's a 'drop in' replacement for reCAPTCHA that you set up in minutes.</description>
<packaging>jar</packaging> <packaging>jar</packaging>
<properties> <properties>
<version.keycloak>15.0.2</version.keycloak> <version.keycloak>22.0.5</version.keycloak>
<maven.compiler.source>11</maven.compiler.source> <maven.compiler.source>17</maven.compiler.source>
<maven.compiler.target>11</maven.compiler.target> <maven.compiler.target>17</maven.compiler.target>
<project.build.sourceEncoding>UTF-8</project.build.sourceEncoding> <project.build.sourceEncoding>UTF-8</project.build.sourceEncoding>
</properties> </properties>
<dependencyManagement>
<dependencies>
<dependency>
<groupId>org.keycloak</groupId>
<artifactId>keycloak-parent</artifactId>
<version>${version.keycloak}</version>
<type>pom</type>
<scope>import</scope>
</dependency>
</dependencies>
</dependencyManagement>
<dependencies> <dependencies>
<dependency> <dependency>
<groupId>org.keycloak</groupId> <groupId>org.keycloak</groupId>
<artifactId>keycloak-core</artifactId> <artifactId>keycloak-core</artifactId>
<version>${version.keycloak}</version> <scope>provided</scope>
<scope>provided</scope> </dependency>
</dependency> <dependency>
<dependency> <groupId>org.keycloak</groupId>
<groupId>org.keycloak</groupId> <artifactId>keycloak-server-spi</artifactId>
<artifactId>keycloak-server-spi</artifactId> <scope>provided</scope>
<version>${version.keycloak}</version> </dependency>
<scope>provided</scope> <dependency>
</dependency> <groupId>org.keycloak</groupId>
<dependency> <artifactId>keycloak-server-spi-private</artifactId>
<groupId>org.keycloak</groupId> <scope>provided</scope>
<artifactId>keycloak-server-spi-private</artifactId> </dependency>
<version>${version.keycloak}</version> <dependency>
<scope>provided</scope> <groupId>org.keycloak</groupId>
</dependency> <artifactId>keycloak-services</artifactId>
<dependency> <scope>provided</scope>
<groupId>org.keycloak</groupId> </dependency>
<artifactId>keycloak-services</artifactId> <dependency>
<version>${version.keycloak}</version> <groupId>org.apache.httpcomponents</groupId>
<scope>provided</scope> <artifactId>httpcore</artifactId>
</dependency> <scope>provided</scope>
</dependency>
<dependency>
<groupId>org.apache.httpcomponents</groupId>
<artifactId>httpclient</artifactId>
<scope>provided</scope>
</dependency>
</dependencies> </dependencies>
<build> <build>
<finalName>${project.artifactId}</finalName> <finalName>${project.artifactId}</finalName>

View File

@ -25,7 +25,7 @@ import org.keycloak.services.messages.Messages;
import org.keycloak.services.validation.Validation; import org.keycloak.services.validation.Validation;
import org.keycloak.util.JsonSerialization; import org.keycloak.util.JsonSerialization;
import javax.ws.rs.core.MultivaluedMap; import jakarta.ws.rs.core.MultivaluedMap;
import java.io.InputStream; import java.io.InputStream;
import java.util.ArrayList; import java.util.ArrayList;
@ -41,68 +41,68 @@ public class RegistrationhCaptcha implements FormAction, FormActionFactory {
public static final String PROVIDER_ID = "registration-hcaptcha-action"; public static final String PROVIDER_ID = "registration-hcaptcha-action";
@Override @Override
public void close() { public void close() {
} }
@Override @Override
public FormAction create(KeycloakSession session) { public FormAction create(KeycloakSession session) {
return this; return this;
} }
@Override @Override
public void init(Scope config) { public void init(Scope config) {
} }
@Override @Override
public void postInit(KeycloakSessionFactory factory) { public void postInit(KeycloakSessionFactory factory) {
} }
@Override @Override
public String getId() { public String getId() {
return PROVIDER_ID; return PROVIDER_ID;
} }
@Override @Override
public String getDisplayType() { public String getDisplayType() {
return "hCaptcha"; return "hCaptcha";
} }
@Override @Override
public String getReferenceCategory() { public String getReferenceCategory() {
return HCAPTCHA_REFERENCE_CATEGORY; return HCAPTCHA_REFERENCE_CATEGORY;
} }
@Override @Override
public boolean isConfigurable() { public boolean isConfigurable() {
return true; return true;
} }
private static AuthenticationExecutionModel.Requirement[] REQUIREMENT_CHOICES = { private static AuthenticationExecutionModel.Requirement[] REQUIREMENT_CHOICES = {
AuthenticationExecutionModel.Requirement.REQUIRED, AuthenticationExecutionModel.Requirement.REQUIRED,
AuthenticationExecutionModel.Requirement.DISABLED AuthenticationExecutionModel.Requirement.DISABLED
}; };
@Override @Override
public Requirement[] getRequirementChoices() { public Requirement[] getRequirementChoices() {
return REQUIREMENT_CHOICES; return REQUIREMENT_CHOICES;
} }
@Override @Override
public boolean isUserSetupAllowed() { public boolean isUserSetupAllowed() {
return false; return false;
} }
@Override @Override
public String getHelpText() { public String getHelpText() {
return "Adds hCaptcha button. hCaptchas verify that the entity that is registering is a human. This can only be used on the internet and must be configured after you add it."; return "Adds hCaptcha button. hCaptchas verify that the entity that is registering is a human. This can only be used on the internet and must be configured after you add it.";
} }
@Override @Override
public void buildPage(FormContext context, LoginFormsProvider form) { public void buildPage(FormContext context, LoginFormsProvider form) {
AuthenticatorConfigModel captchaConfig = context.getAuthenticatorConfig(); AuthenticatorConfigModel captchaConfig = context.getAuthenticatorConfig();
String userLanguageTag = context.getSession().getContext().resolveLocale(context.getUser()).toLanguageTag(); String userLanguageTag = context.getSession().getContext().resolveLocale(context.getUser()).toLanguageTag();
@ -121,10 +121,10 @@ public class RegistrationhCaptcha implements FormAction, FormActionFactory {
form.setAttribute("hcaptchaSiteKey", siteKey); form.setAttribute("hcaptchaSiteKey", siteKey);
form.addScript("https://js.hcaptcha.com/1/api.js?hl=" + userLanguageTag); form.addScript("https://js.hcaptcha.com/1/api.js?hl=" + userLanguageTag);
} }
@Override @Override
public void validate(ValidationContext context) { public void validate(ValidationContext context) {
MultivaluedMap<String, String> formData = context.getHttpRequest().getDecodedFormParameters(); MultivaluedMap<String, String> formData = context.getHttpRequest().getDecodedFormParameters();
List<FormMessage> errors = new ArrayList<>(); List<FormMessage> errors = new ArrayList<>();
@ -150,7 +150,7 @@ public class RegistrationhCaptcha implements FormAction, FormActionFactory {
} }
} }
protected boolean validateRecaptcha(ValidationContext context, boolean success, String captcha, String secret) { protected boolean validateRecaptcha(ValidationContext context, boolean success, String captcha, String secret) {
@ -167,7 +167,7 @@ public class RegistrationhCaptcha implements FormAction, FormActionFactory {
InputStream content = response.getEntity().getContent(); InputStream content = response.getEntity().getContent();
try { try {
@SuppressWarnings("rawtypes") @SuppressWarnings("rawtypes")
Map json = JsonSerialization.readValue(content, Map.class); Map json = JsonSerialization.readValue(content, Map.class);
Object val = json.get("success"); Object val = json.get("success");
success = Boolean.TRUE.equals(val); success = Boolean.TRUE.equals(val);
} finally { } finally {
@ -180,25 +180,25 @@ public class RegistrationhCaptcha implements FormAction, FormActionFactory {
return success; return success;
} }
@Override @Override
public void success(FormContext context) { public void success(FormContext context) {
} }
@Override @Override
public boolean requiresUser() { public boolean requiresUser() {
return false; return false;
} }
@Override @Override
public boolean configuredFor(KeycloakSession session, RealmModel realm, UserModel user) { public boolean configuredFor(KeycloakSession session, RealmModel realm, UserModel user) {
return true; return true;
} }
@Override @Override
public void setRequiredActions(KeycloakSession session, RealmModel realm, UserModel user) { public void setRequiredActions(KeycloakSession session, RealmModel realm, UserModel user) {
} }
private static final List<ProviderConfigProperty> CONFIG_PROPERTIES = new ArrayList<ProviderConfigProperty>(); private static final List<ProviderConfigProperty> CONFIG_PROPERTIES = new ArrayList<ProviderConfigProperty>();
@ -224,9 +224,9 @@ public class RegistrationhCaptcha implements FormAction, FormActionFactory {
CONFIG_PROPERTIES.add(property); CONFIG_PROPERTIES.add(property);
} }
@Override @Override
public List<ProviderConfigProperty> getConfigProperties() { public List<ProviderConfigProperty> getConfigProperties() {
return CONFIG_PROPERTIES; return CONFIG_PROPERTIES;
} }
} }