Thomas Gerbet (tgerbet)2019-12-18 12:07 Hello, It would be great if support requests does not go into closed issue. That's not really the place for it especially if you expect a reply, it would be great if you use your proper support channels ;) . The redirect URI that must be used is https://tuleapaks.azure.st.com/plugins/openidconnectclient/azure/ but you need to set it accordingly when you register the app in Azure AD (and it must be of type web).
mohamed hajji (hajjim)2019-12-18 11:54 Hello, We are trying to use the open id plugin with Azure AD. Could you please give us the Redirect URI to be used in the azure configuration because we got this error: "AADSTS50011: The reply URL specified in the request does not match the reply URLs configured for the application" the Redirect Uris already tested : "https://tuleapaks.azure.st.com/plugins/openidconnectclient/azure/" "https://tuleapaks.azure.st.com/accout/login.php" Regards, Mohamed
Thomas Gerbet (tgerbet)2019-12-11 11:29 FYI there is one limitation at the moment: it is only possible to use a specific consumer tenant (e.g. 9188040d-6c67-4c5b-b112-36a304b66dad) so it means only users from a specific Azure AD tenant can log in with it. Using tenant like common, organization or consumers it not supported at the moment.
Thomas Gerbet (tgerbet)2019-12-10 17:49 gerrit #17063 integrated into Tuleap 11.8.99.290. Update of Azure AD providers in the site administration is now possible. Status changed from Under review to ClosedConnected artifacts Added Fixed in: rel #13877Close date set to 2019-12-10Is an Enhancement or an internal improvement? set to enhancement
Lorentz Romain (lorentzr)2019-12-10 16:14 A part of this patch (Allow Azure AD update on UI) is under review : gerrit #17063
Thomas Gerbet (tgerbet)2019-12-10 15:38 gerrit #17077 integrated into Tuleap 11.8.99.283, the possibility to add a Azure AD provider is now visible on all instances. @terzino: You can now do your tests. It is now possible to add, remove and login with an Azure AD provider. Updating (i.e possibility to update the name/icon/color/tenant ID/client ID/client secret) it is not yet available but that should not be that much of an issue.
Lorentz Romain (lorentzr)2019-12-10 14:18 A part of this patch (remove dev option to add Azure provider) is under review : gerrit #17077
Thomas Gerbet (tgerbet)2019-12-10 13:55 gerrit #17039 (Update authentication check for Azure AD) integrated into Tuleap 11.8.99.277.
Thomas Gerbet (tgerbet)2019-12-10 11:13 gerrit #17062 (Should be able to select Azure AD provider from empty state) integrated into Tuleap 11.8.99.271.
Lorentz Romain (lorentzr)2019-12-06 16:25 A part of this patch (Azure validation) is under review gerrit #17039
Lorentz Romain (lorentzr)2019-11-28 14:13 last edited by: Lorentz Romain (lorentzr) 2019-11-28 14:14 A part of this patch (backend creation for Azure AD provider) is under review gerrit #16938 Assigned to changed from None to Lorentz Romain (lorentzr)
Thomas Gerbet (tgerbet)2019-11-28 10:42 gerrit #16903 (Initial refactoring) integrated into Tuleap 11.8.99.156.
Nouha Terzi (terzino)2019-11-26 14:33 yes Thank you. we'll be testing it as soon as it will be integrated.
Thomas Gerbet (tgerbet)2019-11-26 10:24 Edited the title of the request to make more obvious what's really going on here. Anyway AFAIK the only provider doing this sort of trick is Azure AD. @terzino: I'm guessing you had the information by other communication channel but this change is scoped for the Tuleap 11.9 release (rel #13877). Summary -Support OpenID Connect providers where the login URL is different than the issuer URL +Support Azure AD as an OpenID Connect provider Status changed from Under review to Under implementation
Lorentz Romain (lorentzr)2019-11-26 10:20 last edited by: Lorentz Romain (lorentzr) 2019-11-26 13:30 A part of this patch is under review : gerrit #16903 Status changed from Verified to Under review
Nouha Terzi (terzino)2019-10-29 14:16 Hello Thomas, team, As already discussed during tuleap openroadmap, we're working on deploying tuleap on Azure and trying the connect thru openid plugin. Could we have this bug fixed? Thank you in advance for your support. regards, Nouha CC list set to stefano.amadori@st.com