Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. Leantime
  3. Add OIDC (and/ or LDAP) support?

Add OIDC (and/ or LDAP) support?

Scheduled Pinned Locked Moved Leantime
17 Posts 7 Posters 1.8k Views 7 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • jdaviescoatesJ Offline
    jdaviescoatesJ Offline
    jdaviescoates
    wrote on last edited by jdaviescoates
    #1

    As far as I can tell, Leantime now supports OIDC - it'd be great to get this added on Cloudron if possible! 🙏

    Configuration details here:
    https://github.com/Leantime/docs/blob/master/installation/configuration.md#openid-conenct-oidc-configuration

    Although I note that says still experimental 🤔

    But it also supports LDAP, so perhaps we could have that in the meantime? (although really I think we should just try out the OIDC stuff given that's the direction Cloudron is moving in):

    https://github.com/Leantime/docs/blob/master/installation/configuration.md#ldap-configuration

    I use Cloudron with Gandi & Hetzner

    1 Reply Last reply
    1
    • girishG Do not disturb
      girishG Do not disturb
      girish
      Staff
      wrote on last edited by
      #2

      OIDC is coming. Leantime needs a variant of OIDC which uses private keys. We are implementing this in our OIDC server. Seems the node module we use does not support it for some reason. A number of apps are stuck in this issue including documize, weblate, dokuwiki, guacamole etc.

      jdaviescoatesJ 1 Reply Last reply
      1
      • girishG girish

        OIDC is coming. Leantime needs a variant of OIDC which uses private keys. We are implementing this in our OIDC server. Seems the node module we use does not support it for some reason. A number of apps are stuck in this issue including documize, weblate, dokuwiki, guacamole etc.

        jdaviescoatesJ Offline
        jdaviescoatesJ Offline
        jdaviescoates
        wrote on last edited by
        #3

        @girish said in Add OIDC (and/ or LDAP) support?:

        Leantime needs a variant of OIDC which uses private keys.

        Ah yes, now you mention it I remember reading something about that on here previously 🙂

        @girish said in Add OIDC (and/ or LDAP) support?:

        We are implementing this in our OIDC server.

        Great!

        I use Cloudron with Gandi & Hetzner

        1 Reply Last reply
        0
        • U Offline
          U Offline
          uwcrbc
          wrote on last edited by
          #4

          Apologies for the revival if irrelevant.
          I am just wondering if this is still on the map and if so, if there is any hint of time until release?

          Many thanks,

          1 Reply Last reply
          2
          • J Online
            J Online
            joseph
            Staff
            wrote on last edited by
            #5

            This is in our TODO list. I think currently the latest Leantime does not work on Cloudron which we are fixing first.

            1 Reply Last reply
            2
            • girishG Do not disturb
              girishG Do not disturb
              girish
              Staff
              wrote on last edited by
              #6

              @uwcrbc currently, the release is blocked by https://github.com/Leantime/leantime/issues/2710#issuecomment-2422544379 . The CLI doesn't work anymore.

              1 Reply Last reply
              0
              • U Offline
                U Offline
                uwcrbc
                wrote on last edited by
                #7

                @girish Looks like v.3.3.0 is out and includes your fix. Would you consider looking into OIDC with releasing Cloudron's related updated package? Thanks,

                1 Reply Last reply
                1
                • nebulonN Away
                  nebulonN Away
                  nebulon
                  Staff
                  wrote on last edited by
                  #8

                  Yes it is in our pipeline, but they changed quite a bit how they use laravel and introduced other issues which we have to fix. Somehow all script sourcing is now setup as http:// instead of https:// and thus the browser would block mixed content fetching on Cloudron. Something around the use of BASE_URL which we haven't pinned down yet.

                  1 Reply Last reply
                  0
                  • leantimeL Offline
                    leantimeL Offline
                    leantime
                    wrote on last edited by
                    #9

                    There was an issue with BASE_URL in 3.3.0 but fixed in 3.3.1. Just make sure that LEAN_APP_URL is set as environment variable and that it contains "https://"

                    Leantime.io | Open Source Project Management

                    1 Reply Last reply
                    2
                    • nebulonN Away
                      nebulonN Away
                      nebulon
                      Staff
                      wrote on last edited by
                      #10

                      Yes, we released the new version just a bit ago. It works well now again. Thanks a lot!

                      1 Reply Last reply
                      2
                      • U Offline
                        U Offline
                        uwcrbc
                        wrote on last edited by
                        #11

                        @nebulon Just to confirm: I presume you are saying that the updated package works well, and that you are not saying that the OIDC login works well. Is this correct?

                        This would seem to match my test: the package does work well in the demo instance, but is without OIDC for now.

                        Also I suppose the App Status table here is updated regularly, but not automatically which would explain the info/package version discrepancies?

                        Many thanks again,

                        1 Reply Last reply
                        0
                        • nebulonN Away
                          nebulonN Away
                          nebulon
                          Staff
                          wrote on last edited by
                          #12

                          oh right I guess the topic got mixed up a bit. The app currently does not have any OIDC integration yet.

                          1 Reply Last reply
                          0
                          • M Offline
                            M Offline
                            max
                            wrote on last edited by
                            #13

                            Hi @nebulon I think the app does support OIDC, at least according to this article https://marketplace.leantime.io/product/installation-auth-provider/
                            Choice of LDAP (OL or AD), OIDC or Google SSO. Works with the open source installation: https://marketplace.leantime.io/product/leantime-open-source-installation/

                            1 Reply Last reply
                            1
                            • M Offline
                              M Offline
                              max
                              wrote on last edited by
                              #14

                              If you need a license to integrate this I'm sure Marcel will oblige.
                              As it is an additional cost option, would you approach this in the same way as Cloudron did for FreeScout, where by default it installs with the app managing its own users, unless the license is purchased?

                              1 Reply Last reply
                              1
                              • girishG Do not disturb
                                girishG Do not disturb
                                girish
                                Staff
                                wrote on last edited by
                                #15

                                @max is Marcel the author of leantime?

                                jdaviescoatesJ 1 Reply Last reply
                                0
                                • girishG girish

                                  @max is Marcel the author of leantime?

                                  jdaviescoatesJ Offline
                                  jdaviescoatesJ Offline
                                  jdaviescoates
                                  wrote on last edited by
                                  #16

                                  @girish said in Add OIDC (and/ or LDAP) support?:

                                  @max is Marcel the author of leantime?

                                  Seems so https://github.com/marcelfolaron

                                  I use Cloudron with Gandi & Hetzner

                                  1 Reply Last reply
                                  0
                                  • M Offline
                                    M Offline
                                    max
                                    wrote on last edited by
                                    #17

                                    Hi, sorry, I missed your question, yes @jdaviescoates is correct Marcel is.

                                    1 Reply Last reply
                                    0
                                    Reply
                                    • Reply as topic
                                    Log in to reply
                                    • Oldest to Newest
                                    • Newest to Oldest
                                    • Most Votes


                                    • Login

                                    • Don't have an account? Register

                                    • Login or register to search.
                                    • First post
                                      Last post
                                    0
                                    • Categories
                                    • Recent
                                    • Tags
                                    • Popular
                                    • Bookmarks
                                    • Search