<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Another LDAP/OIDC sync issue - admin can't login]]></title><description><![CDATA[<p dir="auto">It seems to be a continuation of issues I'm facing, including the <a href="https://forum.cloudron.io/topic/10584/ldap-failing">latest one</a>.<br />
Since OIDC has been introduced, and after Cloudron 7.5.* version I keep facing many instabilities and issues.</p>
<p dir="auto">Now the problem is that I can't login with superadmin user to the dashboard.</p>
<p dir="auto">Here is a schema:<br />
LDAP client sync users from LDAP master. It seems like all users can login into LDAP client Cloudron, except for admin user.</p>
<p dir="auto">Impersonating works. But not an LDAP based auth. I have only one superadmin, so I'm not sure if that's exactly the problem or if there are other related things affecting.</p>
<p dir="auto">The problem first noticed at 7.5.2, but I updated to 7.6.1 and the issue still persist.</p>
<p dir="auto">The only error I'm seeing - it's 'Internal error, try again later'.<br />
Console gives a bit more information:</p>
<pre><code>[Error] Failed to load resource: the server responded with a status of 401 () (login, line 0)
</code></pre>
<p dir="auto">It also shows that 401 error handler is failing at 138 line - screenshot of that piece attached.</p>
<p dir="auto"><img src="/assets/uploads/files/1702067330637-screenshot-2023-12-08-at-21.28.24-resized.png" alt="Screenshot 2023-12-08 at 21.28.24.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.cloudron.io/topic/10601/another-ldap-oidc-sync-issue-admin-can-t-login</link><generator>RSS for Node</generator><lastBuildDate>Sun, 16 Aug 2026 07:17:59 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/10601.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 08 Dec 2023 20:30:37 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Another LDAP/OIDC sync issue - admin can't login on Wed, 17 Jan 2024 22:22:22 GMT]]></title><description><![CDATA[<blockquote>
<p dir="auto">Are you able to login without 2fa</p>
</blockquote>
<p dir="auto">yep - by setting up temporary password with cloudron cli tool</p>
<blockquote>
<p dir="auto">Note that the ldap connector does not sync with a cron job, you have to press the sync button manually.</p>
</blockquote>
<p dir="auto">Not valid - as otherwise I wouldn't be able to login with temporary password - user wouldn't exist.</p>
<p dir="auto">Manual sync - yes, sure. My logins worked up till I setup 2FA on admin on master server.</p>
]]></description><link>https://forum.cloudron.io/post/81315</link><guid isPermaLink="true">https://forum.cloudron.io/post/81315</guid><dc:creator><![CDATA[potemkin_ai]]></dc:creator><pubDate>Wed, 17 Jan 2024 22:22:22 GMT</pubDate></item><item><title><![CDATA[Reply to Another LDAP/OIDC sync issue - admin can't login on Wed, 03 Jan 2024 14:35:27 GMT]]></title><description><![CDATA[<p dir="auto">There was a bug that 2FA is not enforced when it should be. I have fixed this now.</p>
<ul>
<li>Is the admin user in the client synced properly ? Note that the ldap connector does not sync with a cron job, you have to press the sync button manually. Do you see a 'External directory user' icon to the right of the user like below?</li>
<li>Are you able to login without 2fa ?</li>
</ul>
<p dir="auto"><img src="/assets/uploads/files/1704292449071-727741a0-4b61-4c25-87a1-956c4d244a46-image.png" alt="image.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.cloudron.io/post/80323</link><guid isPermaLink="true">https://forum.cloudron.io/post/80323</guid><dc:creator><![CDATA[girish]]></dc:creator><pubDate>Wed, 03 Jan 2024 14:35:27 GMT</pubDate></item><item><title><![CDATA[Reply to Another LDAP/OIDC sync issue - admin can't login on Tue, 02 Jan 2024 22:39:02 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/potemkin_ai" aria-label="Profile: potemkin_ai">@<bdi>potemkin_ai</bdi></a> said in <a href="/post/79016">Another LDAP/OIDC sync issue - admin can't login</a>:</p>
<blockquote>
<p dir="auto">The only error I'm seeing - it's 'Internal error, try again later'.</p>
</blockquote>
<p dir="auto">I have fixed this part. When a username is valid but just the password is incorrect, it displays 'Internal error' incorrectly.</p>
<p dir="auto">I will test the 2FA part tomorrow and get back.</p>
]]></description><link>https://forum.cloudron.io/post/80283</link><guid isPermaLink="true">https://forum.cloudron.io/post/80283</guid><dc:creator><![CDATA[girish]]></dc:creator><pubDate>Tue, 02 Jan 2024 22:39:02 GMT</pubDate></item><item><title><![CDATA[Reply to Another LDAP/OIDC sync issue - admin can't login on Fri, 29 Dec 2023 13:25:15 GMT]]></title><description><![CDATA[<p dir="auto">Apologies, any updates on that?</p>
]]></description><link>https://forum.cloudron.io/post/80054</link><guid isPermaLink="true">https://forum.cloudron.io/post/80054</guid><dc:creator><![CDATA[potemkin_ai]]></dc:creator><pubDate>Fri, 29 Dec 2023 13:25:15 GMT</pubDate></item><item><title><![CDATA[Reply to Another LDAP/OIDC sync issue - admin can't login on Sun, 10 Dec 2023 20:42:57 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a> said in <a href="/post/79096">Another LDAP/OIDC sync issue - admin can't login</a>:</p>
<blockquote>
<p dir="auto">What is the 401 response message body/text?</p>
</blockquote>
<p dir="auto">Seems to be empty:</p>
<p dir="auto"><img src="/assets/uploads/files/1702240912890-screenshot-2023-12-10-at-21.41.15.png" alt="Screenshot 2023-12-10 at 21.41.15.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">As a guess: do you handle 2FA auth from slave/client LDAP Cloudron? I would guess it's a corner case and it's not handled.</p>
]]></description><link>https://forum.cloudron.io/post/79099</link><guid isPermaLink="true">https://forum.cloudron.io/post/79099</guid><dc:creator><![CDATA[potemkin_ai]]></dc:creator><pubDate>Sun, 10 Dec 2023 20:42:57 GMT</pubDate></item><item><title><![CDATA[Reply to Another LDAP/OIDC sync issue - admin can't login on Sun, 10 Dec 2023 19:33:08 GMT]]></title><description><![CDATA[<p dir="auto">What is the 401 response message body/text?</p>
]]></description><link>https://forum.cloudron.io/post/79096</link><guid isPermaLink="true">https://forum.cloudron.io/post/79096</guid><dc:creator><![CDATA[nebulon]]></dc:creator><pubDate>Sun, 10 Dec 2023 19:33:08 GMT</pubDate></item><item><title><![CDATA[Reply to Another LDAP/OIDC sync issue - admin can't login on Sat, 09 Dec 2023 20:16:42 GMT]]></title><description><![CDATA[<p dir="auto">Superadmin has 2FA enabled. Guess it could be also a problem.</p>
]]></description><link>https://forum.cloudron.io/post/79067</link><guid isPermaLink="true">https://forum.cloudron.io/post/79067</guid><dc:creator><![CDATA[potemkin_ai]]></dc:creator><pubDate>Sat, 09 Dec 2023 20:16:42 GMT</pubDate></item><item><title><![CDATA[Reply to Another LDAP/OIDC sync issue - admin can't login on Fri, 08 Dec 2023 20:35:58 GMT]]></title><description><![CDATA[<p dir="auto">btw: nothing in box, nginx logs.</p>
]]></description><link>https://forum.cloudron.io/post/79017</link><guid isPermaLink="true">https://forum.cloudron.io/post/79017</guid><dc:creator><![CDATA[potemkin_ai]]></dc:creator><pubDate>Fri, 08 Dec 2023 20:35:58 GMT</pubDate></item></channel></rss>