how to configure keystone and shibboleth for federative login to horizon

asked 2014-07-17 09:53:17 -0500

pintergreg gravatar image

I'm configuring federative access to openstack based on http://docs.openstack.org/developer/keystone/configure_federation.html (this document). What I would like to see if I open <server-address>/horizon I got a discovery choose IdP and after auth I'm redirected into Horizon. This works, but now I'm redirected to Horizon login screen after auth, because I protect /horizon with Shibboleth. I don't understand why code in documentation protects REST path with Shibboleth. Or if it is correct how can I reach horizon with federated auth?

Docs says not to set REMOTE_USER and I removed that part from shibboleth config.

edit retag flag offensive close merge delete

1 answer

Sort by ยป oldest newest most voted
0

answered 2014-07-17 16:18:39 -0500

smaffulli gravatar image

Check this answer for a suggestion on how to proceed.

edit flag offensive delete link more

Comments

So, is it possible only with modifying Horizon?

pintergreg gravatar imagepintergreg ( 2014-07-23 07:15:56 -0500 )edit

Get to know Ask OpenStack

Resources for moderators

Question Tools

1 follower

Stats

Asked: 2014-07-17 09:53:17 -0500

Seen: 314 times

Last updated: Jul 17 '14