Project

General

Profile

Actions

User story #22738

closed

OIDC provided custom role list

Added by François ARMAND over 1 year ago. Updated over 1 year ago.

Status:
Released
Priority:
N/A
Target version:
UX impact:
Suggestion strength:
User visibility:
Effort required:
Name check:
To do
Fix check:
To do
Regression:
No

Description

We want that the OIDC provides an additionnal list of custom role

We add 3 new options in the OIDC provider:

- `rudder.auth.oauth2.provider.${provider}.roles.enabled=true` (`false` by default or if missing): do we want that that provider also provide roles for the user
- `rudder.auth.oauth2.provider.${provider}.roles.attribute=customroles` : what is the attribute in the token that will contain the list (string array) of role name to add ?
- `rudder.auth.oauth2.provider.okta.roles.override=true` (`false` by default or if missing): do we want that the list of provided roles override roles configured in `rudder-user.xml`


Related issues 1 (0 open1 closed)

Related to Rudder - Bug #24230: Authentication providers and role mapping settings should be exposedReleasedVincent MEMBRÉActions
Actions #1

Updated by François ARMAND over 1 year ago

  • Status changed from New to In progress
  • Assignee set to François ARMAND
Actions #2

Updated by François ARMAND over 1 year ago

  • Status changed from In progress to Pending technical review
  • Assignee changed from François ARMAND to Vincent MEMBRÉ
  • Pull Request set to https://github.com/Normation/rudder-plugins/pull/557
Actions #3

Updated by François ARMAND over 1 year ago

  • Description updated (diff)
Actions #4

Updated by Anonymous over 1 year ago

  • Status changed from Pending technical review to Pending release
Actions #5

Updated by Vincent MEMBRÉ over 1 year ago

  • Status changed from Pending release to Released

This bug has been fixed in Rudder plugin auth-backends v7.3.3-2.6

Actions #6

Updated by Clark ANDRIANASOLO 10 months ago

  • Related to Bug #24230: Authentication providers and role mapping settings should be exposed added
Actions

Also available in: Atom PDF