Xavier Calland ( 
https://osgeo-org.atlassian.net/secure/ViewProfile.jspa?accountId=5ca1d8728b4488751add746e
 ) *created* an issue

GeoServer ( 
https://osgeo-org.atlassian.net/browse/GEOS?atlOrigin=eyJpIjoiYmVlZDU0MzA4ZTU1NDY1ZWE5Zjg5NjRiZTIwYjBjODEiLCJwIjoiaiJ9
 ) / Bug ( 
https://osgeo-org.atlassian.net/browse/GEOS-10645?atlOrigin=eyJpIjoiYmVlZDU0MzA4ZTU1NDY1ZWE5Zjg5NjRiZTIwYjBjODEiLCJwIjoiaiJ9
 ) GEOS-10645 ( 
https://osgeo-org.atlassian.net/browse/GEOS-10645?atlOrigin=eyJpIjoiYmVlZDU0MzA4ZTU1NDY1ZWE5Zjg5NjRiZTIwYjBjODEiLCJwIjoiaiJ9
 ) Keycloak Role Service - Fail to sync roles if keycloak contexte path is not 
"/atuh" ( 
https://osgeo-org.atlassian.net/browse/GEOS-10645?atlOrigin=eyJpIjoiYmVlZDU0MzA4ZTU1NDY1ZWE5Zjg5NjRiZTIwYjBjODEiLCJwIjoiaiJ9
 )

Issue Type: Bug Affects Versions: 2.20.5, 2.21.1, 2.22-M0 Assignee: Unassigned 
Components: Security Created: 07/Sep/22 10:49 AM Priority: Medium Reporter: 
Xavier Calland ( 
https://osgeo-org.atlassian.net/secure/ViewProfile.jspa?accountId=5ca1d8728b4488751add746e
 )

URLs builded by KeycloakUrlBuilder to call Keycloak endpoints start with 
"/auth" which was the default Keycloak context path in previous versions of 
Keycloak.

This is done in :

* Token URL ( 
https://github.com/geoserver/geoserver/blob/9e94dac4cd44ae4c446e6ebbba00dfc8d67ce6ef/src/community/security/keycloak/src/main/java/org/geoserver/security/keycloak/KeycloakUrlBuilder.java#L124
 )
* API call URL ( 
https://github.com/geoserver/geoserver/blob/9e94dac4cd44ae4c446e6ebbba00dfc8d67ce6ef/src/community/security/keycloak/src/main/java/org/geoserver/security/keycloak/KeycloakUrlBuilder.java#L23
 )

The context path should probably be part of the "serverUrl" parameter.

( 
https://osgeo-org.atlassian.net/browse/GEOS-10645#add-comment?atlOrigin=eyJpIjoiYmVlZDU0MzA4ZTU1NDY1ZWE5Zjg5NjRiZTIwYjBjODEiLCJwIjoiaiJ9
 ) Add Comment ( 
https://osgeo-org.atlassian.net/browse/GEOS-10645#add-comment?atlOrigin=eyJpIjoiYmVlZDU0MzA4ZTU1NDY1ZWE5Zjg5NjRiZTIwYjBjODEiLCJwIjoiaiJ9
 )

Get Jira notifications on your phone! Download the Jira Cloud app for Android ( 
https://play.google.com/store/apps/details?id=com.atlassian.android.jira.core&referrer=utm_source%3DNotificationLink%26utm_medium%3DEmail
 ) or iOS ( 
https://itunes.apple.com/app/apple-store/id1006972087?pt=696495&ct=EmailNotificationLink&mt=8
 ) This message was sent by Atlassian Jira (v1001.0.0-SNAPSHOT#100206- 
sha1:e474d8f )
_______________________________________________
Geoserver-devel mailing list
Geoserver-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/geoserver-devel

Reply via email to