Skip to main content

Custom Keycloak Client

30/09/2026

GraphRAG 1.3

GraphRAG requires access to multiple Graph Modelling components' APIs using a single OAuth2 credential. Currently this includes the thesaurus and extractor, with more components likely to be added in future. For security reasons, none of the default Keycloak clients grants the combined access that GraphRAG requires. You must therefore create a dedicated Keycloak client graphrag on the Graph Modelling Keycloak server. Whilst future releases are expected to automatically provision this client during deployment, it must currently be configured manually.