I am using keycloak to authenticate users in a node application. This node application makes further requests to a JAVA backend (using KONG) which are authenticated using th