**Issue Description:** 1. The IRSA policy for AWS Load Balancer controller is missing permissions for AddTags action which is causing the NLB service association to fail. 2. The service definition for the keycloak service is using default configuration for NLB scheme leading to `internal` load balancer endpoint. 3. The keycloak version needs to be upgraded. **Solution:** 1. Add missing permissions to AWS Load Balancer controller IRSA policy 4. Add service annotation to set the service scheme to `internet-facing`. 5. Upgrade keycloak version to latest 22.0.1