Skip to content

Conversation

@chocobar
Copy link
Collaborator

  • Upgrade go-oidc from v2 to v3 for InsecureIssuerURLContext support
  • Add ExpectedIssuer to allow API to connect via internal URL but accept external issuer
  • Auto-create users in database on first OIDC login
  • Add KEYCLOAK_FRONTEND_URL config for browser-accessible Keycloak URL
  • Add docker-compose.keycloak.yaml for standalone Keycloak setup
  • Fix frontend login to handle OIDC redirects properly

🤖 Generated with Claude Code

- Upgrade go-oidc from v2 to v3 for InsecureIssuerURLContext support
- Add ExpectedIssuer to allow API to connect via internal URL but accept external issuer
- Auto-create users in database on first OIDC login
- Add KEYCLOAK_FRONTEND_URL config for browser-accessible Keycloak URL
- Add docker-compose.keycloak.yaml for standalone Keycloak setup
- Fix frontend login to handle OIDC redirects properly

🤖 Generated with [Claude Code](https://claude.com/claude-code)

Co-Authored-By: Claude Opus 4.5 <[email protected]>
@chocobar chocobar force-pushed the design/saas-keycloak-extraction branch from 3d59bbd to 81348cd Compare December 31, 2025 06:49
@chocobar chocobar merged commit b063b87 into main Dec 31, 2025
9 checks passed
@chocobar chocobar deleted the design/saas-keycloak-extraction branch December 31, 2025 09:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants