Using Keycloak with AWS SSO

I’m trying to get AWS SSO configured to work with Keycloak but, at the final step, AWS just reports:

Error details we have received from the server

  • Internal Failure

I’m guessing that the reference to “the server” is my Keycloak server but I cannot find any logs (yet) that show any errors.

I know that there are blogs out there about configuring Keycloak as an identity provider to IAM but I want to use AWS SSO instead.

Thanks for any suggestions.