eip-work / kuboard-press

Kuboard 是基于 Kubernetes 的微服务管理界面。同时提供 Kubernetes 免费中文教程,入门教程,最新版本的 Kubernetes v1.23.4 安装手册,(k8s install) 在线答疑,持续更新。
https://kuboard.cn/
21.66k stars 1.49k forks source link

kuboard配置oidc登录,groups获取不到 #447

Open CharkeyQK opened 10 months ago

CharkeyQK commented 10 months ago

  KUBOARD_LOGIN_TYPE: "oidc"
  KUBOARD_ROOT_USER: "root"
  UPSTREAM_OIDC_ISSUER: "https://sso.server/"
  UPSTREAM_OIDC_CLIENT_ID: "kuboard"
  UPSTREAM_OIDC_CLIENT_SECRET: "client-secret"
  UPSTREAM_OIDC_REDIRECT_URI: "https://kuboard/sso/callback"

使用 Keycloak,client已经为client scopes加入了 groups;但是登录的时候,kuboard日志还是看到groups为空: msg="login successful: connector \"oidc\", username=\"devops\", preferred_username=\"devops\", email=\"devops@example.com\", groups=[]"

请问哪里配置有误

liusancai commented 9 months ago

请问是怎么配置oidc登录的,没有找到对应的文档