<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Nextcloud OIDC integration]]></title><description><![CDATA[<p dir="auto">We have published a new major version of the nextcloud package that migrates ldap login to oidc login. It is also marked as unstable. I recommend waiting a bit before you update away sensitive instances.</p>
<p dir="auto">Please report any bugs/issues here.</p>
]]></description><link>https://forum.cloudron.io/topic/13188/nextcloud-oidc-integration</link><generator>RSS for Node</generator><lastBuildDate>Fri, 10 Apr 2026 09:00:19 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/13188.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 25 Jan 2025 19:49:37 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Nextcloud OIDC integration on Thu, 12 Jun 2025 12:51:14 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a> said in <a href="/post/108546">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">I'm guess that answer was way off?</p>
</blockquote>
<p dir="auto">Yes. Completly wrong.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a> said in <a href="/post/108546">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">as it sometimes does</p>
</blockquote>
<p dir="auto">Most of the time it does when the AI does not have the necessary information in its model.<br />
Since this a very specific context of Nextcloud inside Cloudron, the AI would need accessive knowledge about what Cloudron is and what it does.<br />
Some AI Models you can pre-feed with details like giving them the docs URL or such.<br />
But even then the Parrot AI starts imagining things.<br />
Better to ask here directly before getting lead on a wild goose chase by the AI.</p>
]]></description><link>https://forum.cloudron.io/post/108550</link><guid isPermaLink="true">https://forum.cloudron.io/post/108550</guid><dc:creator><![CDATA[james]]></dc:creator><pubDate>Thu, 12 Jun 2025 12:51:14 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Thu, 12 Jun 2025 12:43:26 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/james" aria-label="Profile: james">@<bdi>james</bdi></a> said in <a href="/post/108490">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">Hello <a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a><br />
No, when you choose "let application manage users" the app itself manages the users.<br />
If all your users truly only exist in Nextcloud and not in Cloudron this migration does not concern you at all.</p>
</blockquote>
<p dir="auto">Thanks for clearing that up. I tried asking ChatGPT this question and it made things more complex than they needed to be, as it sometimes does.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/avatar1024" aria-label="Profile: avatar1024">@<bdi>avatar1024</bdi></a> said in <a href="/post/108527">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">Even if you were using LDAP, the transition to OIDC only affects the login process (for NC itself and all external apps) but not anything internal like folder shares, groups, circles, etc.</p>
</blockquote>
<p dir="auto">I know now it doesn't pertain to my situation, but I was asking ChatGPT before I commented here and it said I would have to recreate all my NextCloud users in Cloudron and that those users would have no relation to the existing LDAP users in NextCloud, so I'd have to manually migrate everything inside NextCloud from the old users to the new users created by Cloudron. I'm guess that answer was way off?</p>
]]></description><link>https://forum.cloudron.io/post/108546</link><guid isPermaLink="true">https://forum.cloudron.io/post/108546</guid><dc:creator><![CDATA[overholt]]></dc:creator><pubDate>Thu, 12 Jun 2025 12:43:26 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Thu, 12 Jun 2025 08:03:04 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a> said in <a href="/post/108480">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">LDAP the default authentication protocol used when installing NextCloud on Cloudron and selecting "let application manage users?"</p>
</blockquote>
<p dir="auto">Just emphasis <a class="plugin-mentions-user plugin-mentions-a" href="/user/james" aria-label="Profile: james">@<bdi>james</bdi></a>'s point, when you select "let application manage users", then you're not using LDAP at all, you're using Nextcloud internal user registration which is not affected whatsoever by the migration from LDAP to OIDC.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a> said in <a href="/post/108480">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">My worry is having to manually reconfigure shares, etc inside NextCloud for users.</p>
</blockquote>
<p dir="auto">Even if you were using LDAP, the transition to OIDC only affects the login process (for NC itself and all external apps) but not anything internal like folder shares, groups, circles, etc.</p>
]]></description><link>https://forum.cloudron.io/post/108527</link><guid isPermaLink="true">https://forum.cloudron.io/post/108527</guid><dc:creator><![CDATA[avatar1024]]></dc:creator><pubDate>Thu, 12 Jun 2025 08:03:04 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Wed, 11 Jun 2025 20:27:50 GMT]]></title><description><![CDATA[<p dir="auto">Hello <a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a><br />
No, when you choose "let application manage users" the app itself manages the users.<br />
If all your users truly only exist in Nextcloud and not in Cloudron this migration does not concern you at all.</p>
]]></description><link>https://forum.cloudron.io/post/108490</link><guid isPermaLink="true">https://forum.cloudron.io/post/108490</guid><dc:creator><![CDATA[james]]></dc:creator><pubDate>Wed, 11 Jun 2025 20:27:50 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Wed, 11 Jun 2025 17:45:26 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/james" aria-label="Profile: james">@<bdi>james</bdi></a> Thanks for the explanation. It does help. It sounds like the migration might be easier than I'm thinking. My worry is having to manually reconfigure shares, etc inside NextCloud for users.</p>
<p dir="auto">Just so I make sure I understand, is LDAP the default authentication protocol used when installing NextCloud on Cloudron and selecting "let application manage users?" I think I might be misunderstanding what LDAP is in relation to Cloudron and NextCloud. I might not even be using LDAP.</p>
]]></description><link>https://forum.cloudron.io/post/108480</link><guid isPermaLink="true">https://forum.cloudron.io/post/108480</guid><dc:creator><![CDATA[overholt]]></dc:creator><pubDate>Wed, 11 Jun 2025 17:45:26 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Wed, 11 Jun 2025 06:43:32 GMT]]></title><description><![CDATA[<p dir="auto">Hello <a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a></p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a> said in <a href="/post/108412">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">It would have been nice to provide a way to migrate NC users to Cloudron while maintaining files, shares and access.</p>
</blockquote>
<p dir="auto">All users that exist in LDAP are automatically migrated to OIDC when they log in for the first time with OIDC.<br />
They retain all files, shares, access, groups and so on.<br />
The reconfiguration part on the desktop client or mobile client part is only a login and everything else should stay the same.<br />
One exception for other clients explained further down.</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/overholt" aria-label="Profile: overholt">@<bdi>overholt</bdi></a> said in <a href="/post/108412">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">Now I will have to explain to everyone why they need to go through that process all over again.</p>
</blockquote>
<p dir="auto">I understand this is not optimal and the wish for a discussion first with the community is also very understandable.<br />
If you are looking for <em>the</em> argument for your company that just started using Nextcloud on Cloudron why this change is necessary?<br />
Answer with, Security and Usability.<br />
Usability might not be that obvious at first since the given task of migration at hand.</p>
<p dir="auto">OIDC Login enables 2FA authentication before the application.<br />
Plain vanilla LDAP has no concept of 2FA.<br />
So, with LDAP, users will have to maintain 2FA codes for every application.<br />
With OIDC, only one 2FA code is needed.</p>
<p dir="auto">Nextcloud specific security advancement with OIDC is that you need to create an app-password within Nextcloud for external clients like DAVx5 or other calendar apps.<br />
This reduces the risk of some random thrid party application leaking the user password.</p>
]]></description><link>https://forum.cloudron.io/post/108426</link><guid isPermaLink="true">https://forum.cloudron.io/post/108426</guid><dc:creator><![CDATA[james]]></dc:creator><pubDate>Wed, 11 Jun 2025 06:43:32 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Tue, 10 Jun 2025 18:51:00 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/girish" aria-label="Profile: girish">@<bdi>girish</bdi></a> said in <a href="/post/100761">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">we can't support both LDAP and OIDC in the long run. But on platform level, we already decided to switch to OIDC for all apps. This is more secure and auditable. I think you can probably wait for the upgrade anyway till all the issues are ironed out. Most of the apps that support OIDC have already been switched to OIDC from LDAP.</p>
</blockquote>
<p dir="auto">This is a pretty big deal for companies with a lot of users who have set NextCloud up with LDAP (because we don't need OIDC). Did the Cloudron team consider that? It will require a lot of hand-holding and manual effort to re-establish new user accounts, reconnect mobile apps and manually reconfigure their files shares and group access. It would have been nice to provide a way to migrate NC users to Cloudron while maintaining files, shares and access.</p>
<p dir="auto">I get that it is better, it's just that now you are forcing your subscribers to jump through a very tall hoop. I just onboarded our entire company to NextCloud, which was a hard enough process. Now I will have to explain to everyone why they need to go through that process all over again. Not fun and not at all what I need right now. We probably won't upgrade until I can figure out what to do. I might migrate our install to a Docker VM. That way I can keep the users in tact and also get the HPBE with AIO. Either way it's a lot of work.</p>
]]></description><link>https://forum.cloudron.io/post/108412</link><guid isPermaLink="true">https://forum.cloudron.io/post/108412</guid><dc:creator><![CDATA[overholt]]></dc:creator><pubDate>Tue, 10 Jun 2025 18:51:00 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 21 Apr 2025 15:47:24 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/rav001" aria-label="Profile: RaV001">@<bdi>RaV001</bdi></a> well, good luck! I hope the backup works and you manage to regain access to your files! <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f91e.png?v=223f9defb2f" class="not-responsive emoji emoji-android emoji--hand_with_index_and_middle_fingers_crossed" style="height:23px;width:auto;vertical-align:middle" title=":hand_with_index_and_middle_fingers_crossed:" alt="🤞" /></p>
]]></description><link>https://forum.cloudron.io/post/106040</link><guid isPermaLink="true">https://forum.cloudron.io/post/106040</guid><dc:creator><![CDATA[jdaviescoates]]></dc:creator><pubDate>Mon, 21 Apr 2025 15:47:24 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 21 Apr 2025 14:02:12 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jdaviescoates" aria-label="Profile: jdaviescoates">@<bdi>jdaviescoates</bdi></a> I am pretty sure I never have used a special password for this. As far as I can tell this was always the users password but somehow I am not seeing where I could have backed up any recovery stuff but Nextcloud seems to do encryption in different ways and some things have changed a lot over time</p>
]]></description><link>https://forum.cloudron.io/post/106038</link><guid isPermaLink="true">https://forum.cloudron.io/post/106038</guid><dc:creator><![CDATA[RaV001]]></dc:creator><pubDate>Mon, 21 Apr 2025 14:02:12 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 21 Apr 2025 13:54:48 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a> yes used the same password as for my user twice but it says the new password is wrong... restoring the backup from last week currently before the update of the Nextcloud app to check if this solves the issue for now</p>
]]></description><link>https://forum.cloudron.io/post/106037</link><guid isPermaLink="true">https://forum.cloudron.io/post/106037</guid><dc:creator><![CDATA[RaV001]]></dc:creator><pubDate>Mon, 21 Apr 2025 13:54:48 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 21 Apr 2025 13:30:48 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/rav001" aria-label="Profile: RaV001">@<bdi>RaV001</bdi></a> never used Nextclouds encryption, but maybe it used the password which was also used by the user account/LDAP before to open the encryption key. Have you tried to use the same password as your Cloudron user has?</p>
]]></description><link>https://forum.cloudron.io/post/106036</link><guid isPermaLink="true">https://forum.cloudron.io/post/106036</guid><dc:creator><![CDATA[nebulon]]></dc:creator><pubDate>Mon, 21 Apr 2025 13:30:48 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 21 Apr 2025 13:26:13 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/rav001" aria-label="Profile: RaV001">@<bdi>RaV001</bdi></a> said in <a href="/post/106034">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">not sure what the old password should be</p>
</blockquote>
<p dir="auto">I'm not sure as I don't use this, but presumably it'll be whatever "your private key password" (not your Cloudron pw) was before whenever you set it up.</p>
<p dir="auto">Hopefully you made a note of it or remember it?!</p>
<p dir="auto">If not you could well be stuck.</p>
<p dir="auto">As an "doesn't help you right now" aside, this is precisely why I personally don't use encryption much myself - I figure the risk of me somehow losing access to my own files by something going wrong or me losing or forgetting my keys is actually quite a lot higher (in that it's actually happened before) than someone nefarious gaining access to my files (which as far as I know has never actually happened)</p>
]]></description><link>https://forum.cloudron.io/post/106035</link><guid isPermaLink="true">https://forum.cloudron.io/post/106035</guid><dc:creator><![CDATA[jdaviescoates]]></dc:creator><pubDate>Mon, 21 Apr 2025 13:26:13 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 21 Apr 2025 12:31:09 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/rav001" aria-label="Profile: RaV001">@<bdi>RaV001</bdi></a> said in <a href="/post/106033">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">Is this known that the encryption keys are not initialized anymore after login in with OIDC? I am currently unable to access any of my files via web after the login and the message "Encryption app is enabled, but your keys are not initialized. Please log-out and log-in again." appears but logging out and in again does not help</p>
</blockquote>
<p dir="auto">Okay I updated to the latest version of Nextcloud in Cloudron and now this has changed to telling me that "Invalid private key for encryption app. Please update your private key password in your personal settings to recover access to your encrypted files" but not sure what the old password should be as I am still using the same account but now logged in via OIDC. No files are readable currently</p>
]]></description><link>https://forum.cloudron.io/post/106034</link><guid isPermaLink="true">https://forum.cloudron.io/post/106034</guid><dc:creator><![CDATA[RaV001]]></dc:creator><pubDate>Mon, 21 Apr 2025 12:31:09 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 21 Apr 2025 11:45:40 GMT]]></title><description><![CDATA[<p dir="auto">Is this known that the encryption keys are not initialized anymore after login in with OIDC? I am currently unable to access any of my files via web after the login and the message "Encryption app is enabled, but your keys are not initialized. Please log-out and log-in again." appears but logging out and in again does not help</p>
]]></description><link>https://forum.cloudron.io/post/106033</link><guid isPermaLink="true">https://forum.cloudron.io/post/106033</guid><dc:creator><![CDATA[RaV001]]></dc:creator><pubDate>Mon, 21 Apr 2025 11:45:40 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Sun, 06 Apr 2025 10:24:30 GMT]]></title><description><![CDATA[<p dir="auto">I guess Nextcloud initiates the OpenID login redirection automatically in that case then. Since the user still has a login session with the OpenID provider (the Cloudron) it will auto-login.</p>
<p dir="auto">Since the logout of Nextcloud itself is from the Nextcloud session, the OpenID provider has no clue about a logout event, so I don't think this is currently possible.</p>
]]></description><link>https://forum.cloudron.io/post/105236</link><guid isPermaLink="true">https://forum.cloudron.io/post/105236</guid><dc:creator><![CDATA[nebulon]]></dc:creator><pubDate>Sun, 06 Apr 2025 10:24:30 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Sun, 06 Apr 2025 10:13:44 GMT]]></title><description><![CDATA[<p dir="auto">Is there a way to lead logged-in Nextcloud OICD users from <em>Logout</em> back to the Cloudron login form in logged-out state?</p>
<p dir="auto"><strong>Expected behaviour</strong></p>
<ol>
<li>User is logged-in in Nextcloud</li>
<li>User presses "Logout" in Nextcloud.</li>
<li>User is logged out of the Nextcloud and from Cloudron.</li>
<li>User sees the Cloudron login form.</li>
</ol>
<hr />
<p dir="auto"><strong>What happens with ˋallow_user_multiple_backendsˋ set to value=0</strong>:</p>
<ol>
<li>User presses "Logout" in Nextcloud</li>
<li>User is invisibly getting redirected to Cloudron login form that reports to the Nextcloud instance that user is logged-in.</li>
<li>User ends up logged-in in Nextcloud.</li>
</ol>
<hr />
<p dir="auto">This would be useful for instances where Nextcloud is the primarily hosted app. We have a server with Nextcloud and Collabora Office backend. There is usually no necessity for users to ever see the dashboard other than editing their profile.</p>
]]></description><link>https://forum.cloudron.io/post/105234</link><guid isPermaLink="true">https://forum.cloudron.io/post/105234</guid><dc:creator><![CDATA[whitespace]]></dc:creator><pubDate>Sun, 06 Apr 2025 10:13:44 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Thu, 27 Mar 2025 16:09:05 GMT]]></title><description><![CDATA[<p dir="auto">Ok this regex to whitelist all groups except "admin" seems to work well <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=223f9defb2f" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":)" alt="🙂" /> : ^(?!admin$).+$</p>
<p dir="auto"><img src="/assets/uploads/files/1743091737419-5b1907af-9228-4a6a-8636-70f00db28b07-image-resized.png" alt="image.png" class=" img-fluid img-markdown" /></p>
]]></description><link>https://forum.cloudron.io/post/104514</link><guid isPermaLink="true">https://forum.cloudron.io/post/104514</guid><dc:creator><![CDATA[avatar1024]]></dc:creator><pubDate>Thu, 27 Mar 2025 16:09:05 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Wed, 26 Mar 2025 18:01:54 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/joseph" aria-label="Profile: joseph">@<bdi>joseph</bdi></a> Thanks, that worked!</p>
<p dir="auto">So far I haven't been able to allow all groups but exclude "admin", but when I only allow only a specific group then the admin group is not provisioned and works as expected.</p>
]]></description><link>https://forum.cloudron.io/post/104463</link><guid isPermaLink="true">https://forum.cloudron.io/post/104463</guid><dc:creator><![CDATA[avatar1024]]></dc:creator><pubDate>Wed, 26 Mar 2025 18:01:54 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Wed, 26 Mar 2025 16:43:01 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/avatar1024" aria-label="Profile: avatar1024">@<bdi>avatar1024</bdi></a> there is a "Group whitelist regex" field in the OIDC UI. Have you tried setting it to only the groups you care about? It says it supports regexp, but not sure if it supports lookahead regexps (ask chatgpt) . i.e match all groups that are not admin.</p>
]]></description><link>https://forum.cloudron.io/post/104461</link><guid isPermaLink="true">https://forum.cloudron.io/post/104461</guid><dc:creator><![CDATA[joseph]]></dc:creator><pubDate>Wed, 26 Mar 2025 16:43:01 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Wed, 26 Mar 2025 15:55:19 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/joseph" aria-label="Profile: joseph">@<bdi>joseph</bdi></a> said in <a href="/post/104426">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">can nextcloud admin group have an arbitrary name or should it be admin(s) ?</p>
</blockquote>
<p dir="auto">In NC the group name for Admins is "admin". You can't change that and you can't create another group with admin rights. And in Cloudron one cannot create a group called "admin" (as you say the name is reserved). It feels like either:</p>
<ul>
<li>Cloudron admins and Super admins should be mapped with the NC admin group</li>
<li>OIDC group syncing should exclude syncing the NC admin group</li>
</ul>
]]></description><link>https://forum.cloudron.io/post/104457</link><guid isPermaLink="true">https://forum.cloudron.io/post/104457</guid><dc:creator><![CDATA[avatar1024]]></dc:creator><pubDate>Wed, 26 Mar 2025 15:55:19 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Wed, 26 Mar 2025 12:01:36 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/avatar1024" aria-label="Profile: avatar1024">@<bdi>avatar1024</bdi></a> can nextcloud admin group have an arbitrary name or should it be admin(s) ? Since group sync is turned on, you have to create a such a group on Cloudron. The admins group is reserved in Cloudron, but this can be changed I think.</p>
]]></description><link>https://forum.cloudron.io/post/104426</link><guid isPermaLink="true">https://forum.cloudron.io/post/104426</guid><dc:creator><![CDATA[joseph]]></dc:creator><pubDate>Wed, 26 Mar 2025 12:01:36 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 24 Mar 2025 22:46:54 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jdaviescoates" aria-label="Profile: jdaviescoates">@<bdi>jdaviescoates</bdi></a> Yeah so it also works for me if I don't activate group mapping / syncing but I was asking if there is a solution to add admins users with that enabled.</p>
<p dir="auto">On one instance we used LDAP groups syncing and so switching to OIDC we need to also sync groups...but then we also needs admins <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f605.png?v=223f9defb2f" class="not-responsive emoji emoji-android emoji--sweat_smile" style="height:23px;width:auto;vertical-align:middle" title=":sweat_smile:" alt="😅" /></p>
<p dir="auto">Anyone got a clue?</p>
<p dir="auto">PS: I've tried with my user who is a cloudron superadmin and with another user who is a Cloudron admin. None of them appear in the NC admin group or can be added to it.</p>
]]></description><link>https://forum.cloudron.io/post/104254</link><guid isPermaLink="true">https://forum.cloudron.io/post/104254</guid><dc:creator><![CDATA[avatar1024]]></dc:creator><pubDate>Mon, 24 Mar 2025 22:46:54 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 24 Mar 2025 21:54:30 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/avatar1024" aria-label="Profile: avatar1024">@<bdi>avatar1024</bdi></a> said in <a href="/post/104242">Nextcloud OIDC integration</a>:</p>
<blockquote>
<p dir="auto">Have you activated group mapping / syncing though?</p>
</blockquote>
<p dir="auto">No.</p>
]]></description><link>https://forum.cloudron.io/post/104250</link><guid isPermaLink="true">https://forum.cloudron.io/post/104250</guid><dc:creator><![CDATA[jdaviescoates]]></dc:creator><pubDate>Mon, 24 Mar 2025 21:54:30 GMT</pubDate></item><item><title><![CDATA[Reply to Nextcloud OIDC integration on Mon, 24 Mar 2025 20:42:01 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jdaviescoates" aria-label="Profile: jdaviescoates">@<bdi>jdaviescoates</bdi></a> Thanks! Have you activated group mapping / syncing though? For me it's not working. I cannot add myself to the admin group (and I have definitely logged in - in fact that's how I know I'm not an admin <img src="https://forum.cloudron.io/assets/plugins/nodebb-plugin-emoji/emoji/android/1f642.png?v=223f9defb2f" class="not-responsive emoji emoji-android emoji--slightly_smiling_face" style="height:23px;width:auto;vertical-align:middle" title=":)" alt="🙂" /> ). I can login with the "admin" user via the Nextcloud form but cannot add anyone else to the admin group, including myself.</p>
]]></description><link>https://forum.cloudron.io/post/104242</link><guid isPermaLink="true">https://forum.cloudron.io/post/104242</guid><dc:creator><![CDATA[avatar1024]]></dc:creator><pubDate>Mon, 24 Mar 2025 20:42:01 GMT</pubDate></item></channel></rss>