Skip to content

Improve OIDC / Rancher/Keycloak docs #1176

Description

@LucasSaintarbor

Related Issues

SURE-6968

Summary

RGS has the below docs request that seems to align with

#827

  • We want to investigate the possibility of incorporating the following changes into the Rancher/Keycloak documentation:
    To enable the ability to view both groups and users, simply add the realm-management based role ‘view-users’ Adding the client role ‘view-users’ (under realm management) at either the group level or individual user level will enable the ability to search for users in Rancher. https://ranchermanager.docs.rancher.com/how-to-guides/new-user-guides/authentication-permissions-and-global-configuration/authentication-config/configure-keycloak-oidc
  • Customers have encountered the following problem concerning the Keycloak OIDC configuration for users and groups. After adding new groups in Keycloak, these groups are not reflected in Rancher. Customers cannot search for new groups or users or manually input them via the ‘Authorized users and groups’ section. Having the view-users client scope allowed us to see the users/groups as desired.

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions