Uploaded image for project: 'Red Hat Internal Developer Platform'
  1. Red Hat Internal Developer Platform
  2. RHIDP-4809

Add preferred username resolver to OIDC provider upstream

Create Doc EPIC for Fe...Prepare for Y ReleasePrepare for Z ReleaseXMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Undefined Undefined
    • None
    • 1.3.0
    • Authentication
    • None
    • False
    • Hide

      None

      Show
      None
    • False

      There is currently a PR created upstream where there is some discussion on whether or not using preferred_username to resolve an user entity is ideal/safe or not.

      This requires more investigations on the common OIDC providers used and how each provider handles preferred_username creation/change since each provider handles this claim differently. Depending on how easily users can change this field, it may or may not be a safe resolver to use/contribute to upstream. 

      The ideal solution to this would be to go with this approach, but it would take much more time and testing.

              Unassigned Unassigned
              rh-ee-jhe Jessica He
              RHIDP - Security
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: