obsidiangroup
Dabbler
- Joined
- Oct 4, 2022
- Messages
- 19
I understand that SAML is still early in development. I am using authentik as identity provider. I have gotten everything setup, and when I select 'SAML Login', it directs me to the SSO for signin, and after signing in, TrueCommand, and asks me if I want to create a new user, but has no information. What attributes does TrueCommand expect? Also, is there something specific that should be set for Audience.
When I check the logs from authentik, authentik is sending the information back to TrueCommand to create a user, but TrueCommand isn't interrupting it:
I can provide logs if needed.
Also, seeing where TrueNAS got its roots, and the open-source movement, are there plans for supporting open source IDPs? The documentation currently only supports ActiveDirectory or Google. Ensuring that your SAML implementation works with other standards-based IDPs would be nice. I am in no way advocating for authentik over Keycloak over Authelia, but rather, ensuring that the documentation and the software works with other SSO solutions.
When I check the logs from authentik, authentik is sending the information back to TrueCommand to create a user, but TrueCommand isn't interrupting it:

I can provide logs if needed.
Also, seeing where TrueNAS got its roots, and the open-source movement, are there plans for supporting open source IDPs? The documentation currently only supports ActiveDirectory or Google. Ensuring that your SAML implementation works with other standards-based IDPs would be nice. I am in no way advocating for authentik over Keycloak over Authelia, but rather, ensuring that the documentation and the software works with other SSO solutions.