Identity & Security Platform

A centralized identity and internal PKI platform at Eigen — unifying authentication across every internal service with single sign-on and securing internal traffic with trusted, auto-renewing certificates.
The Problem
Eigen's internal services each had their own authentication, forcing users to remember multiple credentials and making access control inconsistent. At the same time, internal services needed trusted TLS certificates for local domains, which public CAs do not issue.
The Solution
Keycloak was deployed as the internal Single Sign-On provider, unifying authentication with centralized user management, role-based access control, OAuth2/OIDC, user federation, and social login. EJBCA was deployed as the private Certificate Authority, issuing and auto-renewing internal SSL/TLS certificates for local domains — securing databases, microservices, and service mesh mTLS.
Key Features
- Keycloak Single Sign-On
- Centralized User Management
- Role-Based Access Control
- OAuth2 & OIDC
- EJBCA Private CA
- Internal SSL/TLS Certificates
- Auto-Renewal
- Microservice mTLS
Key Outcomes
Single Sign-On
One login across all internal services.
Centralized Users
User management and role-based access in one place.
Private CA
Trusted internal SSL/TLS certificates for local domains.
mTLS Ready
Secures service mesh and microservice-to-microservice traffic.
Project Summary
Eigen's Identity & Security Platform combines Keycloak SSO and an EJBCA private CA to unify authentication and secure internal traffic with trusted, auto-renewing certificates.
Gallery



