39
Use groups from OpenID Connect SSO provider
Source: outline/outline#3779 · opened by @Frando
Hi, we're using Outline with Keycloak as an OpenID Connect (OIDC) single-sign on provider. This works great. In Keycloak, we maintain group membership for our users. If I see things correctly, it is currently not possible to use these groups in Outline. This would be great to have. We'd like to split our Outline wiki in different sections, accessible to different parts of the member audience. This is possible in a nice and simple way by setting up groups in Outline and then setting the per-collection permissions accordingly. However, we would love to not have to do this manually, as all the required groups and group memberships are already maintained in our Keycloak user store. For example Nextcloud has a feature (through the social login extension) that allows to map OIDC groups (exposed in a groups claim) to Nextcloud group, or optionally auto-create Nextcloud groups for all groups i a OIDC claim that do not yet exist. This feature would be great to have in Outl…
No pledges yet. Be the first to back this.
Comments
Similar requests
Assign users to groups based on SSO-provided information
23 votes · 0 comments
Support for Generic OpenID Connect Identity Providers
11 votes · 0 comments
[FR] provide local login with openid(Oauth) way
1 vote · 0 comments
Synchronizing OIDC groups with groups
1 vote · 0 comments
Allow magic link login even if the email is enrolled with an SSO provider
3 votes · 0 comments
No comments yet.