|
189 | 189 | "manage-clients", |
190 | 190 | "manage-realm", |
191 | 191 | "view-identity-providers", |
192 | | - "query-realms", |
193 | 192 | "manage-authorization", |
194 | 193 | "manage-identity-providers", |
195 | 194 | "manage-users", |
196 | | - "view-users", |
| 195 | + "query-realms", |
197 | 196 | "view-realm", |
| 197 | + "view-users", |
198 | 198 | "create-client", |
199 | 199 | "view-clients", |
200 | 200 | "manage-events", |
|
1342 | 1342 | "consentRequired": false, |
1343 | 1343 | "config": { |
1344 | 1344 | "user.session.note": "AUTH_TIME", |
1345 | | - "id.token.claim": "true", |
1346 | 1345 | "introspection.token.claim": "true", |
| 1346 | + "userinfo.token.claim": "true", |
| 1347 | + "id.token.claim": "true", |
1347 | 1348 | "access.token.claim": "true", |
1348 | 1349 | "claim.name": "auth_time", |
1349 | 1350 | "jsonType.label": "long" |
|
1380 | 1381 | "consentRequired": false, |
1381 | 1382 | "config": { |
1382 | 1383 | "user.session.note": "client_id", |
1383 | | - "id.token.claim": "true", |
1384 | 1384 | "introspection.token.claim": "true", |
| 1385 | + "userinfo.token.claim": "true", |
| 1386 | + "id.token.claim": "true", |
1385 | 1387 | "access.token.claim": "true", |
1386 | 1388 | "claim.name": "client_id", |
1387 | 1389 | "jsonType.label": "String" |
|
1395 | 1397 | "consentRequired": false, |
1396 | 1398 | "config": { |
1397 | 1399 | "user.session.note": "clientAddress", |
1398 | | - "id.token.claim": "true", |
1399 | 1400 | "introspection.token.claim": "true", |
| 1401 | + "userinfo.token.claim": "true", |
| 1402 | + "id.token.claim": "true", |
1400 | 1403 | "access.token.claim": "true", |
1401 | 1404 | "claim.name": "clientAddress", |
1402 | 1405 | "jsonType.label": "String" |
|
1410 | 1413 | "consentRequired": false, |
1411 | 1414 | "config": { |
1412 | 1415 | "user.session.note": "clientHost", |
1413 | | - "id.token.claim": "true", |
1414 | 1416 | "introspection.token.claim": "true", |
| 1417 | + "userinfo.token.claim": "true", |
| 1418 | + "id.token.claim": "true", |
1415 | 1419 | "access.token.claim": "true", |
1416 | 1420 | "claim.name": "clientHost", |
1417 | 1421 | "jsonType.label": "String" |
|
1545 | 1549 | { |
1546 | 1550 | "alias": "saml", |
1547 | 1551 | "displayName": "", |
1548 | | - "internalId": "bedb6a8b-dd65-41b7-a840-e75c3f33c011", |
| 1552 | + "internalId": "10da424c-6370-46d8-9908-f30ddc470e89", |
1549 | 1553 | "providerId": "saml", |
1550 | 1554 | "enabled": true, |
1551 | 1555 | "updateProfileFirstLoginMode": "on", |
|
1559 | 1563 | "postBindingLogout": "false", |
1560 | 1564 | "postBindingResponse": "true", |
1561 | 1565 | "backchannelSupported": "false", |
1562 | | - "caseSensitiveOriginalUsername": "false", |
1563 | | - "idpEntityId": "http://shibboleth.mydomain.com:8081/idp/shibboleth", |
1564 | | - "useMetadataDescriptorUrl": "false", |
| 1566 | + "idpEntityId": "https://shibboleth.mydomain.com/idp/shibboleth", |
1565 | 1567 | "loginHint": "false", |
1566 | 1568 | "allowCreate": "true", |
1567 | 1569 | "enabledFromMetadata": "true", |
1568 | 1570 | "syncMode": "LEGACY", |
1569 | | - "authnContextComparisonType": "exact", |
1570 | | - "singleSignOnServiceUrl": "http://shibboleth.mydomain.com:8081/idp/profile/SAML2/POST/SSO", |
| 1571 | + "singleSignOnServiceUrl": "https://shibboleth.mydomain.com/idp/profile/SAML2/POST/SSO", |
1571 | 1572 | "wantAuthnRequestsSigned": "false", |
1572 | 1573 | "allowedClockSkew": "0", |
1573 | | - "encryptionPublicKey": "MIIEJDCCAoygAwIBAgIVAII0/PRaQr1QoXlJtHbcDGRnyocxMA0GCSqGSIb3DQEBCwUAMBkxFzAV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\nYZ5ulUrfE3BCIXDxGxz/iFsKh1WkxJeN8TjijJrEadldFcRBNlM=", |
1574 | 1574 | "artifactBindingResponse": "false", |
1575 | | - "validateSignature": "true", |
1576 | | - "signingCertificate": "MIIEJDCCAoygAwIBAgIVAM8b3qtgL+eFCvKP8aXQUe7eEHUFMA0GCSqGSIb3DQEBCwUAMBkxFzAV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\nKFj7McfFHjwJOOfwsISR1vIBNn/5DpSfGdvQSwgQOurMWBq9OZE=,MIIEJDCCAoygAwIBAgIVAIUVGHsl8DEfYEeE+YxoJdLSl0FJMA0GCSqGSIb3DQEBCwUAMBkxFzAV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\nD4prnPHn37YmkS77qCA9R5HcN+xDh16zVHKjZuTWN5h0IquTndA=", |
| 1575 | + "validateSignature": "false", |
| 1576 | + "signingCertificate": "MIIDPDCCAiSgAwIBAgIJAMdrd4p+Lz19MA0GCSqGSIb3DQEBCwUAMCIxIDAeBgNV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\nY3iA/7tFp9h0olcENcA6JQ==", |
1577 | 1577 | "nameIDPolicyFormat": "urn:oasis:names:tc:SAML:2.0:nameid-format:persistent", |
1578 | 1578 | "entityId": "http://keycloak.mydomain.com:8090/realms/test", |
1579 | 1579 | "signSpMetadata": "false", |
1580 | 1580 | "wantAssertionsEncrypted": "false", |
1581 | 1581 | "sendClientIdOnLogout": "false", |
1582 | | - "metadataDescriptorUrl": "http://shibboleth.mydomain.com:8080/idp/shibboleth", |
1583 | 1582 | "wantAssertionsSigned": "false", |
| 1583 | + "metadataDescriptorUrl": "http://shibboleth.mydomain.com:8080/idp/shibboleth", |
1584 | 1584 | "sendIdTokenOnLogout": "true", |
1585 | 1585 | "postBindingAuthnRequest": "true", |
1586 | 1586 | "forceAuthn": "false", |
|
1613 | 1613 | "subComponents": {}, |
1614 | 1614 | "config": { |
1615 | 1615 | "allowed-protocol-mapper-types": [ |
1616 | | - "saml-role-list-mapper", |
1617 | | - "oidc-full-name-mapper", |
1618 | | - "oidc-address-mapper", |
1619 | 1616 | "oidc-usermodel-property-mapper", |
1620 | | - "oidc-sha256-pairwise-sub-mapper", |
1621 | 1617 | "saml-user-attribute-mapper", |
| 1618 | + "oidc-usermodel-attribute-mapper", |
| 1619 | + "oidc-address-mapper", |
| 1620 | + "saml-role-list-mapper", |
| 1621 | + "oidc-sha256-pairwise-sub-mapper", |
1622 | 1622 | "saml-user-property-mapper", |
1623 | | - "oidc-usermodel-attribute-mapper" |
| 1623 | + "oidc-full-name-mapper" |
1624 | 1624 | ] |
1625 | 1625 | } |
1626 | 1626 | }, |
|
1632 | 1632 | "subComponents": {}, |
1633 | 1633 | "config": { |
1634 | 1634 | "allowed-protocol-mapper-types": [ |
| 1635 | + "saml-user-property-mapper", |
| 1636 | + "saml-user-attribute-mapper", |
1635 | 1637 | "oidc-address-mapper", |
1636 | | - "oidc-usermodel-property-mapper", |
1637 | | - "oidc-usermodel-attribute-mapper", |
1638 | 1638 | "saml-role-list-mapper", |
1639 | 1639 | "oidc-sha256-pairwise-sub-mapper", |
1640 | | - "saml-user-attribute-mapper", |
1641 | 1640 | "oidc-full-name-mapper", |
1642 | | - "saml-user-property-mapper" |
| 1641 | + "oidc-usermodel-attribute-mapper", |
| 1642 | + "oidc-usermodel-property-mapper" |
1643 | 1643 | ] |
1644 | 1644 | } |
1645 | 1645 | }, |
|
1706 | 1706 | "providerId": "dv-builtin-users-authenticator", |
1707 | 1707 | "subComponents": {}, |
1708 | 1708 | "config": {} |
| 1709 | + }, |
| 1710 | + { |
| 1711 | + "id": "6290c807-4887-4260-8577-948f15671928", |
| 1712 | + "name": "Dataverse built-in users authentication", |
| 1713 | + "providerId": "dv-builtin-users-authenticator", |
| 1714 | + "subComponents": {}, |
| 1715 | + "config": {} |
1709 | 1716 | } |
1710 | 1717 | ], |
1711 | 1718 | "org.keycloak.userprofile.UserProfileProvider": [ |
|
0 commit comments