Uploaded image for project: 'OpenId Connect'
  1. OpenId Connect
  2. OIDC-51

Add support for group membership synchronization

    Details

    • Type: New Feature
    • Status: Closed
    • Priority: Minor
    • Resolution: Fixed
    • Affects Version/s: 1.7.1
    • Fix Version/s: 1.8
    • Component/s: Authenticator
    • Labels:
      None
    • Difficulty:
      Unknown
    • Documentation in Release Notes:
      N/A
    • Similar issues:

      Description

      We try to setup the group synchronisation as written in configuration guide with the claim "xwiki_user_groups". While our provider (we use keycloak) returns the value in both userinfo and id_token, the groups are not imported.

      I am not sure if the feature is intended to be use this way, while reading the code I can find any clue of the user groups being read, the only attribute to be matched is "CLAIM_XWIKI_GROUPS" defined __ as "xwiki_groups", we tryed to bind this attribute also but no result.

      Could you tell me if the feature is supposed to be used this way or if we have a misunderstanding.

       

        Attachments

          Activity

            People

            • Assignee:
              willyburgos Willy Burgos
              Reporter:
              yannj Yann Jouanin
            • Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved:
                Date of First Response: