<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[OpenID Connect group restrictions?]]></title><description><![CDATA[<p dir="auto">Is there, or is there planned to be, a way to restrict an OpenID Connect provider to members of a certain group?</p>
<p dir="auto">Specifically, we have a web site hosted outside of Cloudron, that it would be <strong>great</strong> to use our Cloudron accounts to control user access to. OpenID Connect (and other OAuth variants) are supported, so Cloudron just coming out with a Provider, is promising. But we want to restrict it to a particular group of users.</p>
]]></description><link>https://forum.cloudron.io/topic/9402/openid-connect-group-restrictions</link><generator>RSS for Node</generator><lastBuildDate>Fri, 11 Sep 2026 17:00:51 GMT</lastBuildDate><atom:link href="https://forum.cloudron.io/topic/9402.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 13 Jun 2023 06:26:49 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to OpenID Connect group restrictions? on Tue, 29 Apr 2025 23:01:39 GMT]]></title><description><![CDATA[<p dir="auto">I am also using app proxy,but my question is unrelated to that, nebulon has already noted the intended use Peter (and now I) meant.</p>
]]></description><link>https://forum.cloudron.io/post/106420</link><guid isPermaLink="true">https://forum.cloudron.io/post/106420</guid><dc:creator><![CDATA[krumel]]></dc:creator><pubDate>Tue, 29 Apr 2025 23:01:39 GMT</pubDate></item><item><title><![CDATA[Reply to OpenID Connect group restrictions? on Mon, 28 Apr 2025 09:57:02 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/nebulon" aria-label="Profile: nebulon">@<bdi>nebulon</bdi></a> ah, "web site hosted outside of Cloudron" . So this is for app proxy?</p>
<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/krumel" aria-label="Profile: krumel">@<bdi>krumel</bdi></a> you are also using app proxy?</p>
]]></description><link>https://forum.cloudron.io/post/106341</link><guid isPermaLink="true">https://forum.cloudron.io/post/106341</guid><dc:creator><![CDATA[joseph]]></dc:creator><pubDate>Mon, 28 Apr 2025 09:57:02 GMT</pubDate></item><item><title><![CDATA[Reply to OpenID Connect group restrictions? on Mon, 28 Apr 2025 09:47:48 GMT]]></title><description><![CDATA[<p dir="auto">I think the feature request is for the OpenID provider feature, so external apps can be setup to use the Cloudron. For this we have to implement a group/user access restriction in the OpenID external client settings.</p>
]]></description><link>https://forum.cloudron.io/post/106340</link><guid isPermaLink="true">https://forum.cloudron.io/post/106340</guid><dc:creator><![CDATA[nebulon]]></dc:creator><pubDate>Mon, 28 Apr 2025 09:47:48 GMT</pubDate></item><item><title><![CDATA[Reply to OpenID Connect group restrictions? on Mon, 28 Apr 2025 09:44:49 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/krumel" aria-label="Profile: krumel">@<bdi>krumel</bdi></a> which app ? group restrictions (roles/permissions) are applied inside the app's configuration, so it really depends if the app supports this.</p>
]]></description><link>https://forum.cloudron.io/post/106339</link><guid isPermaLink="true">https://forum.cloudron.io/post/106339</guid><dc:creator><![CDATA[joseph]]></dc:creator><pubDate>Mon, 28 Apr 2025 09:44:49 GMT</pubDate></item><item><title><![CDATA[Reply to OpenID Connect group restrictions? on Mon, 28 Apr 2025 06:24:30 GMT]]></title><description><![CDATA[<p dir="auto">Is there any update on this? The current system of allowing all users is a bit suboptimal.</p>
]]></description><link>https://forum.cloudron.io/post/106320</link><guid isPermaLink="true">https://forum.cloudron.io/post/106320</guid><dc:creator><![CDATA[krumel]]></dc:creator><pubDate>Mon, 28 Apr 2025 06:24:30 GMT</pubDate></item><item><title><![CDATA[Reply to OpenID Connect group restrictions? on Tue, 13 Jun 2023 12:16:21 GMT]]></title><description><![CDATA[<p dir="auto">The oidc addon for apps already has group restriction support, however for external apps, this is not implemented. Technically it can be added so I will move this thread to feature requests section.</p>
]]></description><link>https://forum.cloudron.io/post/68198</link><guid isPermaLink="true">https://forum.cloudron.io/post/68198</guid><dc:creator><![CDATA[nebulon]]></dc:creator><pubDate>Tue, 13 Jun 2023 12:16:21 GMT</pubDate></item></channel></rss>