Uploaded image for project: 'Red Hat Internal Developer Platform'
  1. Red Hat Internal Developer Platform
  2. RHIDP-7798

[Spike] Determine best practices when authenticating with multiple IdPs

    • Icon: Task Task
    • Resolution: Done
    • Icon: Normal Normal
    • 1.7.0
    • 1.6.0
    • Authentication
    • None
    • 3
    • False
    • Hide

      None

      Show
      None
    • False
    • RHDH Security 3275, RHDH Security 3276

      Investigate the behaviour and best practices for configuring authentication with multiple IdPs.

      For instance, the use case would be: when a primary IdP like Keycloak is used for sign-in and user provisioning, and GitHub auth is added to support GitHub-based plugins

      Background:

      If we enable the GitHub org catalog provider on top of the existing one, there is a risk of user duplication or conflicts due to attempts to ingest the same user from multiple sources. 

      If the GitHub catalog provider is not configured, users signing in via GitHub will encounter the error with user not found in catalog.

      Related issues: 

      The DevIT instance is currently facing this issue: https://issues.redhat.com/browse/RHIDP-7620

              rh-ee-jhe Jessica He
              rh-ee-jhe Jessica He
              RHIDP - Security
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: