Panfactum / stack

The Panfactum Stack
https://panfactum.com
Other
11 stars 4 forks source link

[feature]: UX - app -> vault -> authentik requires user to select OIDC at the Vault Login page #59

Closed mschnee closed 4 days ago

mschnee commented 3 weeks ago

Prior Search

What new functionality would you like to see?

When setting up a client/provider via vault_identity_oidc_provider and vault_identity_oidc_client, an OIDC redirect from a webapp takes the user to Vault, where they are required to "Log into vault with your credentials". By default, the "token" option is selected.

Currently, the user has to be instructed to "select OIDC from the Method Drop-down, do not enter a role, and click Sign in with OIDC Provider".

A better UX would be to just pass through vault transparently as if there were no other options to choose. I am unsure if this is possible.

How would you use this new functionality?

Using Vault -> Authentik for user log-in is currently not a great experience, as it requires providing additional instruction to end-user even though there is no other mechanism available.

fullykubed commented 3 weeks ago

Can you please try to the latest edge release and validate that this is still the behavior?

fullykubed commented 3 weeks ago

@mschnee Just want to confirm this was resolved for you before I close it.

mschnee commented 3 weeks ago

Will check tomorrow! We have the day off today so the lady and I are doing wedding prep.

fullykubed commented 4 days ago

Resolved.