mirror of
https://github.com/dbeaver/cloudbeaver.git
synced 2026-04-25 13:46:02 +03:00
[GH-ISSUE #612] reverse proxy header authentication #172
Labels
No labels
AS
can't reproduce
can't reproduce
deployment
development
documentation
duplicate
duplicate
ee
enhancement
external
new driver
performance
pull-request
third party issue
wait for response
wait for review
wontfix
x:Oracle
x:cassandra
x:clickhouse
x:db2
x:duckdb
x:greenplum
x:h2
x:h2gis
x:hana
x:hive
x:intersystems
x:kyuubi
x:maria
x:mongo
x:mysql
x:postgresql
x:presto
x:sql server
x:sqlite
x:teradata
x:trino
xf:accessibility
xf:administration
xf:ai
xf:authentication
xf:aws
xf:commit-mode
xf:connection
xf:dark theme
xf:data editor
xf:datatransfer
xf:dba
xf:driver management
xf:erd
xf:filters
xf:i18n
xf:i18n
xf:installer
xf:json
xf:kerberos
xf:ldap
xf:local config
xf:log viewer
xf:metadata
xf:metadata editor
xf:navigator
xf:okta
xf:query manager
xf:resource manager
xf:scripts
xf:sql editor
xf:tasks
xf:ui/uix
xo: Firefox
xo:eclipse
xo:internet explorer
xo:macos
xp:major
xrn:internal
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/cloudbeaver#172
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @skaravad on GitHub (Dec 31, 2021).
Original GitHub issue: https://github.com/dbeaver/cloudbeaver/issues/612
Is it possible to allow users and groups based on reverse proxy headers ?
For instance we can use X-Email as login and X-Group as user group for authenticating and authorizing users , this can be a very simple and effective authentication and authorization mechanism without complex integrations via SAML, LDAP etc.
Few systems which use this simple mechanism:
https://plugins.jenkins.io/reverse-proxy-auth-plugin/
https://grafana.com/docs/grafana/latest/auth/auth-proxy/
@skaravad commented on GitHub (Jan 4, 2022):
please consider this feature for CE vs EE
@kseniiaguzeeva commented on GitHub (Jan 12, 2022):
Thank you for the feature request. We are going to investigate and implement it.
@kseniiaguzeeva commented on GitHub (Mar 23, 2022):
The feature is available in the latest release.
@skaravad commented on GitHub (Mar 23, 2022):
Hello there,
Thank you for enabling this feature, how to enable the auth method ? is there a command line arg that we can use ?
@kseniiaguzeeva commented on GitHub (Mar 23, 2022):
You have to add parameter
"enableReverseProxyAuth": trueto .cloudbeaver.rutime.conf and add parameters to nginx.conf:Here are related articles: Reverse proxy header authentication and Server configuration.
Feel free to ask any additional questions.
@skaravad commented on GitHub (Mar 23, 2022):
Thank you for your quick response, enabled it and it is working as expected.