Uploaded image for project: 'Migration Toolkit for Applications'
  1. Migration Toolkit for Applications
  2. MTA-5006

Authentication setup is broken after keycloak update to v26

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done-Errata
    • Icon: Critical Critical
    • MTA 7.3.0
    • MTA 7.3.0
    • Hub
    • None
    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • False
    • Important
    • None

      Description:

      When auth is enabled during MTA installation, operator&hub should setup user-related stuff in keycloak. After update of keycloak to v26, existing setup methods become insufficent and needs to be updated to add missing required user fields or updated realm setup to not require those (see below).

      Thanks fbladilo@redhat.com for reporting this problem.

      Version-Release number of selected component (if applicable): 7.3.0 pre-release builds

      How reproducible: 100% with auth enabled

      Steps to Reproduce:
      1. install MTA with auth enabled
      2. try use API or UI

      Actual results:

      API login with correct credentials fails with "invalid_grant: Account is not fully set up".

      UI redirects to page requesting fill firstname, lastname and email.

      Expected results:

      MTA UI&API works right after the installation.

       

      Additional info:

      Since API tier0 tests are used as part of d/s release process, this blocks the release and Franco recommened make this blocker.

              rhn-engineering-maufart Marek Aufart
              rhn-engineering-maufart Marek Aufart
              Nandini Chandra Nandini Chandra
              Votes:
              0 Vote for this issue
              Watchers:
              7 Start watching this issue

                Created:
                Updated:
                Resolved: