Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content

Keycloak

6 Topics 79 Posts
  • Keycloak - Package Updates

    Pinned
    22
    0 Votes
    22 Posts
    2k Views
    Package UpdatesP
    [1.3.4] Update keycloak to 26.3.4 Full Changelog #​40630 Double check when working with multithreading. SAST #​42245 Upgrade to Quarkus 3.20.2.2 #​35825 Per client session idle time capped by realm level client idle timeout core #​40374 Random but frequent duplicate key value violates unique constraint "constraint_offl_us_ses_pk2" errors authentication #​40463 Login to Account Console produces two consecutive LOGIN events account/ui #​40857 Unbounded login_hint Parameter Can Corrupt KC_RESTART Cookie and Break Login Flow oidc #​41427 Parallel token exchange fails if client session is expired token-exchange #​41801 Lack of coordination in database creation in 26.3.0 causes deployment failures (Reopen) core #​41942 Uncaught server error: org.keycloak.models.ModelException: Database operation failed : Sync LDAP Groups to Keycloak (Custom Provider) core #​42012 Client session timestamp not updated in the database if running multiple nodes infinispan
  • Config resets after restart

    Solved
    3
    0 Votes
    3 Posts
    91 Views
    S
    @girish thank you so much! I completely missed the option to configure trusted ips, my bad. Adding the required ip's to the list solved the issue for me
  • realm email configuration

    4
    1
    1 Votes
    4 Posts
    437 Views
    aurelien-cA
    For the record, the advice was fruitful and I have a working configuration.
  • how to connect to a cloudron ldap via federation?

    12
    3
    2 Votes
    12 Posts
    2k Views
    C
    To circle back on this... I deployed Keycloak from the app store. I created a new (local) admin user and deleted the temp one (as per the instructions out of the box). I then used the "Login with Cloudron" button and was able to login to Keycloak (as the non admin user from Cloudron directory) and my Cloudron user shows up in Keycloak . I would be very interested in developing/documenting a tight integration/best practices between Cloudron/Keycloak as a way to greatly extend/enhance Cloudron user management. Setting up various tenants, self service enabling signups in those tenants etc. For example, building user on-boarding / approval workflows (where you bring on a new team member and they need to be provisioned into groups). Right now, only Cloudron Superadmins have the ability to manage groups, and that isn't a privilege I want to hand out I originally planned to have Claude build me a web app and utilize the Cloudron API to build that functionality (and was going to AGPLv3 it). However, perhaps, with Keycloak we don't have to fully re-invent the wheel? IAM is a VERY important requirement/feature to compete with AWS/Azure. It's the next thing my board wants to see as we move through go-live with Cloudron across our various projects/entities. Who would be the key people I would need to work with to get this built out/tested/integrated/streamlined? I realize that Cloudron (as I understand it) isn't currently positioned/targeting "enterprise" or those who may use AWS/Azure. I am happy todo the light/medium/(some) heavy lift work to help get it to where I need it to be. I am a founder/CTO of a company that is in the ramp up/growth phase. I steadfastly refuse to use the "big cloud" and Cloudron has been amazing at eliminating about 90% of system admin duties in a reliable way.
  • Enabling features

    26
    0 Votes
    26 Posts
    2k Views
    girishG
    @gpichler @msbt I have merged it now and published it
  • How to add a permanent admin?

    12
    0 Votes
    12 Posts
    3k Views
    S
    @joseph btw, i ended up uninstalling and reinstalling the Keycloak app and this the process went about as depicted in your video.