Versatile 2FA Single Sign-On with Keycloak and privacyIDEA

I don’t think it’s a Keycloak issue.
U2F should be avoided if possible, my understanding is

Unless 3.3 fixes everything

Features:
* New token type: WebAuthn/FIDO2 token (#1468)
* WebAuthn hardware tokens can now be used with privacyIDEA