Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[BUG] Sharing Keycloak setup, not exactly a bug but certainly felt like one #1554

Closed
5 tasks done
rxunique opened this issue Apr 26, 2024 · 3 comments
Closed
5 tasks done
Assignees
Labels
🐛 Bug [ISSUE] Ticket describing something that isn't working

Comments

@rxunique
Copy link

rxunique commented Apr 26, 2024

Environment

Self-Hosted (Docker)

System

Docker 25

Version

3.0

Describe the problem

It wasn't very smooth for me to get Dashy 3.0 and KC 24.0.3 working together, but I kinda got there, so sharing my settings that may help others. Also there's a bit bug like behavior, not sure which side it originate from, or just need a documentation update

Most of Dashy doc are good, here are some crucial details

In TC clients,
"Client authentication" must be switched off, otherwise it gets into a redirect loop, or at least that's how it looks like to me.

In TC clients -> Advanced -> OpenID Connect Compatibility Modes,
"Exclude Issuer From Authentication Response " must be switched on. Otherwise it redirects to "https://dashy.my.domain/#iss=https://keycloak.my.domain/realms/my-realm"

You can still login to dashy, but refresh, logout will generate in TC error="invalid_redirect_uri"

In TC clients -> Access settings, if you are using multiple dashy pages, you need

Otherwise other pages will generate in TC error="invalid_redirect_uri"

With above steps, I got KC working ok, but show/hide based on group/role still doesn't work, raised here #1550

Additional info

No response

Please tick the boxes

@rxunique rxunique added the 🐛 Bug [ISSUE] Ticket describing something that isn't working label Apr 26, 2024
@liss-bot
Copy link
Collaborator

If you're enjoying Dashy, consider dropping us a ⭐
🤖 I'm a bot, and this message was automated

@rxunique rxunique changed the title [BUG] Sharing Keycloak setup, not exactly a bug but certainly felt like on [BUG] Sharing Keycloak setup, not exactly a bug but certainly felt like one Apr 26, 2024
@spacecake
Copy link

Hello all,
For anybody using Dashy authentication, please read the following posts:

Read carefully before using Dashy exposed to the internet.

@liss-bot liss-bot added the 👤 Awaiting Maintainer Response [ISSUE] Response from repo author is pending label May 6, 2024
@CrazyWolf13
Copy link
Collaborator

Hi
I created a PR for this: #1581.

Once it gets merged i'll close this here.

Regarding the Post by subtract, view the recent post by lissy: #1579

@liss-bot liss-bot removed the 👤 Awaiting Maintainer Response [ISSUE] Response from repo author is pending label May 13, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
🐛 Bug [ISSUE] Ticket describing something that isn't working
Projects
Status: Done
Development

No branches or pull requests

5 participants