authcrunch / authcrunch.github.io

Documentation for Caddy v2 Auth Portal and Authorize Plugins.
81 stars 34 forks source link

Update Keycloak Example #62

Open Shadow-Labs-Dev opened 1 month ago

Shadow-Labs-Dev commented 1 month ago

Im currently running a complied version with xcaddy v2.8.4. However when trying to validate the configuration useing caddy validate /etc/caddy/Caddyfile it spits out

Can you update to make your mathcing with the latest version of caddy? Any help is much appreciated.

greenpau commented 1 month ago

@shadow-security1 , the error you are getting is about security directive. This config does not seem to be valid. What is the reference configuration you were using when building the config?

Shadow-Labs-Dev commented 1 month ago

I was basing it off the documentation for the modules and compilied version from using xcaddy.

greenpau commented 1 month ago

@shadow-security1 , please this reference configuration. https://github.com/greenpau/caddy-security/issues/353 The config file above is invalid for the latest version of caddy-security plugin.

Shadow-Labs-Dev commented 1 month ago

One issue i have is your recommendation to disable any other key signatures in keycloak that is not a vaild nor standard practice or recommendation for keycloak/odic

greenpau commented 1 month ago

One issue i have is your recommendation to disable any other key signatures in keycloak that is not a vaild nor standard practice or recommendation for keycloak/odic

@shadow-security1 , please submit PR to change the doc. First, the doc was written a long time ago and things have changes. At the time, that was the only way to make it work with the authentication portal. Second, I don’t use it myself and was helping someone like yourself to figure things out. That user set the instance for me and we worked on it together. I would love for Keyclock maintainers to maintain the doc page, but that is not realistic 😄

Shadow-Labs-Dev commented 1 month ago

I feel that i think ive got a configuration working to some issue but would need more help before i can get the update provided. I removed my config for privacy reasons but happy to collaborate with this. Im not sure how to best exchange and support the effort.

greenpau commented 1 month ago

@shadow-security1 , reach out on Linkedin and we will get on Google Meet to troubleshoot.