Newbie question Authorization after traefik-forward-auth

I have been trying to setup a general application proxy to protect my home network and my developements and other home based services. Today I reached a little milestone.

Traefik 2.1
TLS Lets Encrypt and Cloud Flare DNS Challenge
Keycloak 9.0 single sign on (traefik-forward-auth and OIDC)
Jaeger Tracing

I'll share the single docker-compose file when it is cleaned up / sanitised.

My question is, can Traefik middleware check if a requested path is authorised according to a Role or Group membership in Keycloak?

If so, can you point me in the right direction?

best regards

Hello Steve,

I reached the same point as you and want also to set up resource based authorizations in Keycloak.

Did you get an answer to your question?