Uploaded image for project: 'Red Hat build of Keycloak'
  1. Red Hat build of Keycloak
  2. RHBK-3009

Home button always redirects to master realm when permission denied [GHI#38932]

XMLWordPrintable

    • False
    • Hide

      None

      Show
      None
    • False

      Before reporting an issue

      [x] I have read and understood the above terms for submitting issues, and I understand that my issue may be closed without action if I do not follow them.

      Area

      admin/ui

      Describe the bug

      When a user without realm management permissions logs into a non-master realm's admin console and clicks the "Home" button on the "You don't have permission" screen, they are incorrectly redirected to the master realm's login page instead of staying within their own realm's context.

      Version

      26.2.0

      Regression

      [ ] The issue is a regression

      Expected behavior

      When clicking the "Home" button on the "You don't have permission" screen in a non-master realm's admin console, the user should be redirected to the login page of the current realm (the non-master realm they were in).

      Actual behavior

      When clicking the "Home" button on the "You don't have permission" screen in a non-master realm's admin console, the user is incorrectly redirected to the master realm's login page.

      How to Reproduce?

      1. Create a second realm (e.g., "test-realm")
      2. Create a new user in "test-realm"
      3. Do not assign any realm management permissions to this user
      4. Log in to the admin console of "test-realm" with the new user's credentials
      5. Observe the "You don't have permission" screen
      6. Click the "Home" button
      7. Observe that you are redirected to the master realm's login page instead of staying in "test-realm"

      Anything else?

      • Issue verified in both Keycloak 26.2.0 and 26.1.5
      • This behavior creates confusion for users and breaks the realm isolation principle, as users from one realm should not be redirected to another realm's context

              Unassigned Unassigned
              pvlha Pavel Vlha
              Keycloak UI
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: