[ 
https://issues.apache.org/jira/browse/NIFI-7765?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17189208#comment-17189208
 ] 

Bryan Bende commented on NIFI-7765:
-----------------------------------

If you have a certificate imported in your browser then NiFi will see that 
first and it will take precedence over OIDC. I use Chrome and I have a p12 in 
my browser that I use to test with NiFI, it displays a prompt to select if I 
want to use the certificate. If I want to test OIDC or some other login method, 
I click cancel on the certificate so that it is not used. Sometimes this 
decision is cached by Chrome and you need to use an incognito window, or 
another browser that doesn't have the p12 imported.

> Toolket CLI OpenID Connect Support
> ----------------------------------
>
>                 Key: NIFI-7765
>                 URL: https://issues.apache.org/jira/browse/NIFI-7765
>             Project: Apache NiFi
>          Issue Type: Improvement
>          Components: Tools and Build
>    Affects Versions: 1.11.4
>         Environment: CentOS Linux 7
>            Reporter: W Chang
>            Priority: Major
>              Labels: Authentication, CLI, Connect, OIDC, OpenID
>
> When a NiFi or a Registry instance is configured for OpenID Connect 
> authentication, a user cannot authenticate to the secure NiFi or the secure 
> Registry using Toolkit CLI to use CLI commands.



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

Reply via email to