Skip to content
This repository has been archived by the owner on Apr 26, 2024. It is now read-only.

roles mapping with keycloak openid sso #8687

Closed
makayabou opened this issue Oct 29, 2020 · 2 comments
Closed

roles mapping with keycloak openid sso #8687

makayabou opened this issue Oct 29, 2020 · 2 comments

Comments

@makayabou
Copy link

Description

I used doc to connect synapse users via keycloak openidconnect protocol.

users can connect and new users are created at first signin.

The problem is that roles from keycloak are not mapped to synapse.

I tried also with saml connect (following https://edenmal.moe/post/2019/Matrix-Synapse-SAML2-Login/) and groups where mapped: user member of admin group in keycloak was granted admin in synapse.

I guess it's just a mapper to create in keycloak client but what would be groups identifier in synapse?

Thanks

Version information

Server v 1.21.2
installation via ansible on Debian 10 amd64

@clokep
Copy link
Member

clokep commented Oct 29, 2020

I do not believe that any of our SSO solutions (OpenID, SAML, or CAS) have a way to automatically grant admin privileges to users.

@makayabou
Copy link
Author

Oups, you're right, my bad.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants