Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Does Harbor OIDC integration support allowing only members of a specific group to log in? #21423

Open
contributorr opened this issue Jan 15, 2025 · 2 comments
Labels
area/oidc backlog kind/requirement New feature or idea on top of harbor

Comments

@contributorr
Copy link

I’ve configured Harbor’s OIDC integration to use a group claim and set an OIDC Group Filter. However, Harbor still allows any authenticated user (to the provider) to log in, even if they’re not in the specified group.

Is there a way to configure Harbor so that only users who belong to a particular group in the OIDC provider can access Harbor at all, rather than just mapping group memberships once they’re already logged in?

@stonezdj
Copy link
Contributor

It is not supported.

@stonezdj stonezdj added kind/requirement New feature or idea on top of harbor area/oidc backlog labels Jan 20, 2025
@contributorr
Copy link
Author

It is not supported.

Hello, is there any plan to support it in future releases? Thanks

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/oidc backlog kind/requirement New feature or idea on top of harbor
Projects
None yet
Development

No branches or pull requests

2 participants