[pve-devel] [PATCH access-control-5076/manager/proxmox-5076 v2 0/3] fix #5076: Added Open ID audiences

Alexander Abraham a.abraham at proxmox.com
Mon Jun 2 16:14:55 CEST 2025


This series adds support for handling Open ID audiences as
described in bug #5076. PVE's API schema was updated to
accept an optional field, an array of strings and the Rust
code was also updated to accordingly handle any incoming
audiences and compare them to the realm config's audiences.
In the realm dialogue for adding an Open ID realm, a new field
titled "Audiences" was added so that users can save any audiences
in their realm domains config file.

proxmox-5076:

Alexander Abraham (1):
  fix #5076: Added logic to handle OIDC audiences

 proxmox-openid/src/lib.rs | 20 ++++++++++++++++++--
 1 file changed, 18 insertions(+), 2 deletions(-)


pve-access-control-5076:

Alexander Abraham (1):
  fix #5076: Changed audiences to an array

 src/PVE/API2/OpenId.pm |  5 ++++-
 src/PVE/Auth/OpenId.pm | 11 ++++++++++-
 2 files changed, 14 insertions(+), 2 deletions(-)


pve-manager:

Alexander Abraham (1):
  fix #5076: Added an "audiences" field for Open ID

 www/manager6/Parser.js            | 27 +++++++++++++++++++++++++++
 www/manager6/dc/AuthEditBase.js   |  8 ++++++++
 www/manager6/dc/AuthEditOpenId.js | 10 +++++++++-
 3 files changed, 44 insertions(+), 1 deletion(-)


Summary over all repositories:
  6 files changed, 76 insertions(+), 5 deletions(-)

-- 
Generated by git-murpp 0.8.1




More information about the pve-devel mailing list