Closed SoleroTG closed 2 months ago
You have not provided any information to be able to investigate it. No details about provider, configuration or anything else.
Thanks for the fast reply.
I added the configuration for traccar and authelia. Is this sufficient or should I provide more detail?
Cheers, Solero
I did some more testing and found out that the login is denied, if I remove myself from the admin group. Is it correct and intended that a user can still log in if he is not in the allowGroup but the adminGroup?
If that is the case then this issue can be closed and I would suggest, that it is mentioned in the documentation.
Admins obviously have access, even if they're not part of allowGroup
.
Describe the bug When using oidc for logging in the value of openid.allowGroup is ignored and login is granted regardless whether the user is member of the group or not.
To Reproduce
Expected behavior Login should be denied if the user is not a member of the group set up in openid.allowGroup.
Screenshots Not applicable.
Desktop (please complete the following information):
Smartphone (please complete the following information):
Additional context Tested with traccar version: 6.1 running as docker container
Edit:
traccar.xml:
IdP: Authelia v4.38.8 (current)
configuration.yml:
users_database.yml: