This repository has been archived by the owner on Apr 26, 2024. It is now read-only.
Support attribute requirements for jwt_login
#13774
Labels
A-SSO
Single Sign-On (maybe OIDC)
O-Uncommon
Most users are unlikely to come across this or unexpected workflow
S-Minor
Blocks non-critical functionality, workarounds exist.
T-Enhancement
New features, changes in functionality, improvements in performance, or user-facing enhancements.
Hello,
I have custom SSO based on Keycloak and using JWT token with Synapse. some of SSO users have special "roles" to using messenger and other Not have. this roles are exist in JWT tokens and can be set per user in Keycloak. in Synapse homeserver JWT config, there is only "audiences" option that is client base and also can't set for each user separately. I think if you add "roles" option to JWT config, server admin can separate SSO users to access matrix based on their roles.
Thanks
The text was updated successfully, but these errors were encountered: