Martin Kanis
|
5d5e56dde3
|
KEYCLOAK-15199 Complement methods for accessing roles with Stream variants
|
2020-09-16 16:29:51 +02:00 |
|
Martin Kanis
|
4e9bdd44f3
|
KEYCLOAK-14901 Replace deprecated ClientProvider related methods across Keycloak
|
2020-09-07 13:11:55 +02:00 |
|
Martin Kanis
|
d59a74c364
|
KEYCLOAK-15102 Complement methods for accessing groups with Stream variants
|
2020-08-28 20:56:10 +02:00 |
|
David Hellwig
|
ddc2c25951
|
KEYCLOAK-2940 - draft - Backchannel Logout (#7272)
* KEYCLOAK-2940 Backchannel Logout
Co-authored-by: Benjamin Weimer <external.Benjamin.Weimer@bosch-si.com>
Co-authored-by: David Hellwig <hed4be@bosch.com>
|
2020-08-12 09:07:58 -03:00 |
|
Luca Leonardo Scorcia
|
d6934c64fd
|
Refactor SAML metadata generation to use the SAMLMetadataWriter class
|
2020-07-09 09:39:35 +02:00 |
|
Hynek Mlnarik
|
32f13016fa
|
KEYCLOAK-12874 Align Destination field existence check with spec
|
2020-05-04 09:19:44 +02:00 |
|
Stefan Guilhen
|
da1138a8d2
|
[KEYCLOAK-13005] Make sure the master URL is used if the consumer POST or REDIRECT URL is an empty string
- Fixes issue where admin console sets an empty string when the consumer POST or REDIRECT URL is deleted
|
2020-04-27 14:25:03 +02:00 |
|
vramik
|
7c91e36e43
|
KEYCLOAK-10898 WildFly Adapter CLI based installation scripts
|
2020-03-02 10:08:45 +01:00 |
|
Stefan Guilhen
|
7a3998870c
|
[KEYCLOAK-12612][KEYCLOAK-12944] Fix validation of SAML destination URLs
- no longer compare them to the server absolutePath; instead use the base URI to build the validation URL
|
2020-02-18 16:38:19 -03:00 |
|
Dmitry Telegin
|
b6c5acef25
|
KEYCLOAK-7969 - SAML users should not be identified by SAML:NameID
|
2020-02-06 08:53:31 +01:00 |
|
rmartinc
|
d39dfd8688
|
KEYCLOAK-12654: Data to sign is incorrect in redirect binding when URI has parameters
|
2020-02-05 11:30:28 +01:00 |
|
rmartinc
|
1989483401
|
KEYCLOAK-12001: Audience support for SAML clients
|
2020-01-31 15:56:40 +01:00 |
|
Andrei Arlou
|
eed4847469
|
KEYCLOAK-12311 Fix minor warnings with collections in packages: forms, keys, partialimport, protocol from module "services"
|
2019-12-20 13:31:38 +01:00 |
|
Andrei Arlou
|
bb156fb2fd
|
KEYCLOAK-12317 Fix minor warnings with modificators in packages: authentication, authorization, keys, partialimport, protocol from module "services"
|
2019-12-18 13:26:27 +01:00 |
|
Andrei Arlou
|
c61cc1a493
|
KEYCLOAK-12316 Simplify conditions in packages: authentication, broker, credential, protocol from module "services"
|
2019-12-18 13:22:36 +01:00 |
|
Andrei Arlou
|
da7e0ba403
|
KEYCLOAK-12310 Remove unused imports from packages: exportimport, forms, jose, partialimport, protocol in module "services" (#6560)
|
2019-12-05 14:28:47 +01:00 |
|
rmartinc
|
82ef5b7927
|
KEYCLOAK-12000: Allow overriding time lifespans on a SAML client
|
2019-11-26 10:02:34 +01:00 |
|
AlistairDoswald
|
4553234f64
|
KEYCLOAK-11745 Multi-factor authentication (#6459)
Co-authored-by: Christophe Frattino <christophe.frattino@elca.ch>
Co-authored-by: Francis PEROT <francis.perot@elca.ch>
Co-authored-by: rpo <harture414@gmail.com>
Co-authored-by: mposolda <mposolda@gmail.com>
Co-authored-by: Jan Lieskovsky <jlieskov@redhat.com>
Co-authored-by: Denis <drichtar@redhat.com>
Co-authored-by: Tomas Kyjovsky <tkyjovsk@redhat.com>
|
2019-11-14 14:45:05 +01:00 |
|
stianst
|
b8881b8ea0
|
KEYCLOAK-11728 New default hostname provider
Co-authored-by: Hynek Mlnarik <hmlnarik@redhat.com>
|
2019-11-11 12:25:44 +01:00 |
|
Gideon Caranzo
|
e07fd9ffa3
|
KEYCLOAK-9936 Added optional hooks for preprocessing SAML authentication
Co-Authored-By: Hynek Mlnarik <hmlnarik@redhat.com>
|
2019-10-29 13:06:59 +01:00 |
|
Mathieu CLAUDEL
|
2fb507e170
|
KEYCLOAK-10802 add support of SAMLv2 ForceAuthn
|
2019-09-27 09:55:54 +02:00 |
|
rmartinc
|
7f54a57271
|
KEYCLOAK-10757: Replaying assertion with signature in SAML adapters
|
2019-09-18 16:49:00 +02:00 |
|
Stan Silvert
|
bc818367a1
|
KEYCLOAK-10854: App-initiated actions Phase I
|
2019-07-26 14:56:29 -03:00 |
|
mhajas
|
57a8fcb669
|
KEYCLOAK-10776 Add session expiration to Keycloak saml login response
|
2019-07-24 13:35:07 +02:00 |
|
Hisanobu Okuda
|
1ac51611d3
|
KEYCLOAK-10664 correct the error message when no SAML request provided
|
2019-06-18 08:47:35 +02:00 |
|
vramik
|
d64f716a20
|
KEYCLOAK-2709 SAML Identity Provider POST Binding request page shown to user is comletely blank with nonsense title
|
2019-05-20 09:51:04 +02:00 |
|
Hynek Mlnarik
|
b8aa1916d8
|
KEYCLOAK-10195 Fix role lookup to address roles with dots
|
2019-05-14 13:00:04 +02:00 |
|
Kohei Tamura
|
43bda455bc
|
KEYCLOAK-10106 - Fix typos in default scripts (#6010)
|
2019-05-07 10:20:04 +02:00 |
|
vramik
|
b7c5ca8b38
|
KEYCLOAK-8535 Inconsistent SAML Logout endpoint handling
|
2019-03-22 14:09:31 +01:00 |
|
Hynek Mlnarik
|
25c07f78bc
|
KEYCLOAK-9578 Fix typo in SAML attribute name format
|
2019-03-19 11:45:38 +01:00 |
|
Hynek Mlnarik
|
1c906c834b
|
KEYCLOAK-3373 Remove SAML IdP descriptor from client installation and publicize it in realm endpoint instead
|
2019-03-19 11:37:15 +01:00 |
|
rmartinc
|
3c44e6c377
|
KEYCLOAK-9068: IDP-initiated-flow is not working with REDIRECT binding
|
2018-12-13 06:28:38 -02:00 |
|
mposolda
|
c51c492996
|
KEYCLOAK-9050 Change LoginProtocol.authenticated to read most of the values from authenticationSession
|
2018-12-12 13:30:03 +01:00 |
|
Martin Kanis
|
0cb6053699
|
KEYCLOAK-8125
|
2018-11-14 20:09:22 +01:00 |
|
rmartinc
|
cbe59f03b7
|
KEYCLOAK-8708: Provide aggregation of group attributes for mappers
|
2018-11-06 13:42:38 +01:00 |
|
Torbjørn Skyberg Knutsen
|
36b0d8b80e
|
KEYCLOAK-7166 Added the possibility of not logging out of remote idp on browser logout, by passing a query param containing the id of the identity provider
|
2018-11-06 13:39:19 +01:00 |
|
mposolda
|
ffcd8e09e7
|
KEYCLOAK-8175 Possibility of clientScope not being used if user doesn't have a role
|
2018-10-31 18:04:41 +01:00 |
|
mposolda
|
2a4cee6044
|
KEYCLOAK-6884 KEYCLOAK-3454 KEYCLOAK-8298 Default 'roles' and 'web-origins' client scopes. Add roles and allowed-origins to the token through protocol mappers
|
2018-10-04 12:00:38 +02:00 |
|
Martin Kanis
|
efe6a38648
|
KEYCLOAK-6718 Auth Flow does not Check Client Protocol
|
2018-09-26 21:00:02 +02:00 |
|
Hynek Mlnarik
|
812e76c39b
|
KEYCLOAK-8163 Improve SAML validations
|
2018-09-05 15:47:03 +02:00 |
|
AlistairDoswald
|
36837ae4b6
|
Added a ScriptMapper for SAML for KEYCLOAK-5520
Added mapper, tests and entry in the ProtocolMapper file.
This code is adapted from the following module: https://github.com/cloudtrust/keycloak-client-mappers
|
2018-08-29 09:39:30 +02:00 |
|
Martin Kanis
|
59082e0b5f
|
KEYCLOAK-7943 NPE when SAML User Property mapper is empty
|
2018-08-24 14:39:24 +02:00 |
|
Hynek Mlnarik
|
a8a9631d4f
|
KEYCLOAK-6832 Unify Destination attribute handling
|
2018-08-09 10:30:30 +02:00 |
|
stianst
|
ae47b7fa80
|
KEYCLOAK-7967 Remove injection of UriInfo
|
2018-08-01 11:57:45 +02:00 |
|
Hynek Mlnarik
|
f43519a16e
|
KEYCLOAK-6708 Fix NPE when email not set for email NameIDFormat
|
2018-07-27 11:10:35 +02:00 |
|
stianst
|
3c5027de3c
|
KEYCLOAK-7701 Refactor key providers to support additional algorithms
|
2018-06-29 14:14:25 +02:00 |
|
Marek Posolda
|
49407c2e4f
|
KEYCLOAK-6630 Client scopes initial support (#5076)
* KEYCLOAK-6630 KEYCLOAK-349 Client Scopes
Co-authored-by: vramik <vramik@redhat.com>
* KEYCLOAK-6630 Change some clientTemplate occurences to clientScope
|
2018-06-08 15:38:38 +02:00 |
|
Ola Bergefall
|
c8c76cc03f
|
KEYCLOAK-7316: Default back to false if isPassive is missing in request.
|
2018-06-07 08:50:32 +02:00 |
|
Hynek Mlnarik
|
7ff18ca14b
|
KEYCLOAK-7331 Fix NPE when SAML Issuer not set in AuthnRequest
|
2018-06-06 16:21:18 +02:00 |
|
Hynek Mlnarik
|
e7cdb8ad54
|
KEYCLOAK-6473 KEYCLOAK-6472 SAML parser refactor + protocol parsers
|
2018-02-23 08:16:14 +01:00 |
|