Platform Administration
...
Introduction to Platform Admin...
Authentication
Oauth2 Authentication using Keycloak
5 min
before getting started it is necessary to have an authentication server with oauth2 protocol, for example, keycloak; to connect to the authentication server; after reading a new user, the system will attribute permissions based on the following parameters procedure access the main navigation menu > parametrization > authentication > oauth2 option ; the authentication method screen will be shown, with the " filters " options and " authentication methods "; as of version 9 1 2 24 9 1 2 24 , there has been a few interface changes described below the search screen is shown, where 4 options exist for the filters trueleft unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type 5\ after filling the information in " filters ", if there is an option with the chosen filters, they will be shown on the " authentication method " table below; 6\ if there is no authentication method, you can create a new one by clicking on " new "; 7\ when you click on " new ", you will be redirected to the creation screen, with 2 tabs to be filled " identification " and " field mapping "; 8\ fill in the " identification " tab trueleft unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type 9\ on the " field mapping ", you have more fields to fill in trueleft unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type left unhandled content type this tab allows the mapping of information contained in the oauth2 tokens on this screen there are two columns, one with the name of the existing fields in the user registration and another with their respective names on oauth2 tokens; the following are the information that can be mapped id number, telephone, and birth date; 10\ the return url to citsmart citsmart must be configured through the chosen external authentication platform