-
Notifications
You must be signed in to change notification settings - Fork 606
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Regrouping issue about the last helm keycloakx chart release #779
Comments
This issue has been marked as stale because it has been open for 30 days with no activity. It will be automatically closed in 10 days if no further activity occurs. |
I really appreciated this update. It helped me get keycloak up and running on eks using an ingress/alb. The catch for me was I needed to include So my working config compared to above differed slightly.
I suppose I'm posting in part to keep the issue from going from stale to closed, and in part to ask for clarity from people who are more experienced if my addition of the Below I've included the output of
|
@kylebisley You are using ENV KC_HTTP_RELATIVE_PATH=/auth . It's okay it allow to keep backward compatibilty from older keycloak version. But if you don't need it and you remove it then it will work without the /auth in the hostname |
My hero @AMontagu. Sorry for hoping on your regroup issue with such a rookie question. I had missed that I needed to override the defaults. For future readers I added
to my values file configuration and now its working for me. hostname-debug after making the change
|
Hello
As I met almost all other issues specified here and contourned them wanted to regroupe all of them in one with fix / things to change.
---------------------- Things to fix from the maintainer ---------------------------
@hansehe I am tagging you as this come from your commit e1f5237#diff-0d42a0bcf21efda1331b8bbd8b883ee80f6b5587a3e02d7820c187911174663cR106
This line: e1f5237#diff-0d42a0bcf21efda1331b8bbd8b883ee80f6b5587a3e02d7820c187911174663cR106
Use a value
Values.proxy.http.enabled
that is not documented. Need to be changed toValues.proxy.enabled
or to be documented in the readmeThe Values.proxy.mode now is send to KC_PROXY_HEADERS instead of KC_PROXY. This is the correct behavior but the value are now forwarded or xforwarded and not edge, passthrough ...
The defautl value need to be changed and the doc adapted
With the latest version (maybe a bug of keycloak directly but need to be set in doc) if using behind an ingress proxy the hostname option need to be set with the https scheme, if not the admin console will try to load
https://my.keycloak.org/resources/master/admin/en
in http instead of https---------------------- Steps to do from the user -------------------------------------
First if you have issue with installing keycloak 25.0 be sure to be on the latest helm repo (version 2.4.2):
See (#775)
Then you need to:
See #778
Then add the hostname:
The full config I use (you can add --optimized or --verbose if wanted):
Finally change the proxy configuration like this:
The text was updated successfully, but these errors were encountered: