# SSO

**URL:** https://meta.discourse.org/c/support/sso/24.md?page=8

[Latest](https://meta.discourse.org/latest.md) · [Categories](https://meta.discourse.org/categories.md) · [Tags](https://meta.discourse.org/tags.md)

**Page:** 9

---

## [API Create user external\_ids parameter](https://meta.discourse.org/t/api-create-user-external-ids-parameter/238470)

<div class="topic-metadata">

**Author:** [@valmarv](https://meta.discourse.org/u/valmarv)\
**Replies:** 1\
**Last updated:** [December 20, 2022, 11:10pm UTC](https://meta.discourse.org/t/api-create-user-external-ids-parameter/238470 "2022-12-20T23:10:18Z")

</div>

I am testing creating users via API and I would like to pass the external user ID along but I cannot figure out how to use the external\_ids parameter (I suppose that’s what it’s for). No matter what I put in there I get …

---

## [Discourse Connect receive Discourse Approval state](https://meta.discourse.org/t/discourse-connect-receive-discourse-approval-state/248832)

<div class="topic-metadata">

**Author:** [@BlockyBlockling](https://meta.discourse.org/u/BlockyBlockling)\
**Replies:** 3\
**Last updated:** [December 13, 2022, 7:42pm UTC](https://meta.discourse.org/t/discourse-connect-receive-discourse-approval-state/248832 "2022-12-13T19:42:52Z")

</div>

I implemented Discourse as Identity Provider a few days ago in PHP. Now where I have a example SSO Payload from my discourse site I wonder if there is a way to check if a user has been Approved. I don’t want Users that …

---

## [Is there a way to link local accounts with the discourse-saml plugin?](https://meta.discourse.org/t/is-there-a-way-to-link-local-accounts-with-the-discourse-saml-plugin/248520)

<div class="topic-metadata">

**Author:** [@Lachlan\_Wintour](https://meta.discourse.org/u/Lachlan_Wintour)\
**Replies:** 1\
**Last updated:** [December 12, 2022, 12:08pm UTC](https://meta.discourse.org/t/is-there-a-way-to-link-local-accounts-with-the-discourse-saml-plugin/248520 "2022-12-12T12:08:32Z")

</div>

We have just enabled saml login for our employees to log in to our forums. Is it possible to link their local accounts with the new saml login, or will we have to get them to make new accounts and merge them? Thanks in …

---

## [Access to OpenID claims data?](https://meta.discourse.org/t/access-to-openid-claims-data/248366)

<div class="topic-metadata">

**Author:** [@paulmelis](https://meta.discourse.org/u/paulmelis)\
**Replies:** 1\
**Last updated:** [December 9, 2022, 3:51pm UTC](https://meta.discourse.org/t/access-to-openid-claims-data/248366 "2022-12-09T15:51:22Z")

</div>

I’ve been testing with the OpenID plugin, which made it real easy to connect to our central authentication service. What I’m wondering about is if there’s any way to use the provided claims data per account in Discourse?…

---

## [Discord auth - "know what servers you're in"](https://meta.discourse.org/t/discord-auth-know-what-servers-youre-in/248244)

<div class="topic-metadata">

**Author:** [@Jack\_Sparrow](https://meta.discourse.org/u/Jack_Sparrow)\
**Replies:** 1\
**Last updated:** [December 8, 2022, 2:17pm UTC](https://meta.discourse.org/t/discord-auth-know-what-servers-youre-in/248244 "2022-12-08T14:17:56Z")

</div>

I have enabled “Discord login” in my forum. While testing it, I can see this in Discord’s oauth2/authorize page. Is there any way to exclude “Know what servers you’re in”? I just want users to login to the forum and have…

---

## [Use OIDC through REST API](https://meta.discourse.org/t/use-oidc-through-rest-api/247936)

<div class="topic-metadata">

**Author:** [@mohit\_kumar](https://meta.discourse.org/u/mohit_kumar)\
**Replies:** 1\
**Last updated:** [December 6, 2022, 5:04pm UTC](https://meta.discourse.org/t/use-oidc-through-rest-api/247936 "2022-12-06T17:04:09Z")

</div>

Hi All, I have setup OIDC and Keycloak, through browser I am able to integrate Discourse, OIDC and Keycloak properly I want to use API for creating/reply posts on behalf of users. For this I want to get the token from …

---

## [Can I automate signup onto my community?](https://meta.discourse.org/t/can-i-automate-signup-onto-my-community/247747)

<div class="topic-metadata">

**Author:** [@Gautham\_Menon](https://meta.discourse.org/u/Gautham_Menon)\
**Replies:** 2\
**Last updated:** [December 5, 2022, 4:32pm UTC](https://meta.discourse.org/t/can-i-automate-signup-onto-my-community/247747 "2022-12-05T16:32:10Z")

</div>

When a user signs up on my platform using their Gmail/SSO, Can I automate the same email to signup on Community? I’ll pass other details like username based on our platform’s username, which they can always change later…

---

## [Skip Welcome Form after keyclock authentication](https://meta.discourse.org/t/skip-welcome-form-after-keyclock-authentication/246932)

<div class="topic-metadata">

**Author:** [@Ken95](https://meta.discourse.org/u/Ken95)\
**Replies:** 0\
**Last updated:** [November 28, 2022, 1:29pm UTC](https://meta.discourse.org/t/skip-welcome-form-after-keyclock-authentication/246932 "2022-11-28T13:29:28Z")

</div>

Hello :smiley: Now, with great help from the community, I have completed keyclock authentication using Discourse OpenID Connect. And as a next step(after completing the external keyclock authentication and return to th…

---

## [Custom header with react](https://meta.discourse.org/t/custom-header-with-react/246603)

<div class="topic-metadata">

**Author:** [@Ken95](https://meta.discourse.org/u/Ken95)\
**Replies:** 0\
**Last updated:** [November 24, 2022, 1:38am UTC](https://meta.discourse.org/t/custom-header-with-react/246603 "2022-11-24T01:38:44Z")

</div>

I wanted to create a custom header using react library. So, I tried to insert react and babel cdn into head of HTML/CSS’s edit. And applied ReactDOM Render Method in Header. But, it did not work in discourse foru…

---

## [Login user to discourse from external page](https://meta.discourse.org/t/login-user-to-discourse-from-external-page/245875)

<div class="topic-metadata">

**Author:** [@Justinvolved](https://meta.discourse.org/u/Justinvolved)\
**Replies:** 0\
**Last updated:** [November 17, 2022, 7:59am UTC](https://meta.discourse.org/t/login-user-to-discourse-from-external-page/245875 "2022-11-17T07:59:20Z")

</div>

Hi all, (quick repost hoping my question is in a better visible place here :slight\_smile: ) I think I understand the process where a user navigates to the Discourse login, and then get’s redirected to the SSO login page…

---

## [Link to FAQ broken (SAML)](https://meta.discourse.org/t/link-to-faq-broken-saml/246015)

<div class="topic-metadata">

**Author:** [@sbernhard](https://meta.discourse.org/u/sbernhard)\
**Replies:** 1\
**Last updated:** [November 21, 2022, 6:01pm UTC](https://meta.discourse.org/t/link-to-faq-broken-saml/246015 "2022-11-21T18:01:53Z")

</div>

Discourse instance with version 2.8.10, SAML (keycloak) works fine but found one major issue: Link from external app (e.g. in Gmail on another browser tab) to /faq forwards to /login and doesn’t display FAQ (fail) Link…

---

## [How admin user re-logins after using discourse connect sso and custom domain](https://meta.discourse.org/t/how-admin-user-re-logins-after-using-discourse-connect-sso-and-custom-domain/246269)

<div class="topic-metadata">

**Author:** [@mikeguo](https://meta.discourse.org/u/mikeguo)\
**Replies:** 1\
**Last updated:** [November 21, 2022, 12:59pm UTC](https://meta.discourse.org/t/how-admin-user-re-logins-after-using-discourse-connect-sso-and-custom-domain/246269 "2022-11-21T12:59:34Z")

</div>

Using discourse connect sso means user login with sso. And setting custom domain requires user to re-login in custom domain. So, if I set sso first and then set custom domain, how I login with admin user? Will the sso…

---

## [Discourse SSO Configuration](https://meta.discourse.org/t/discourse-sso-configuration/246178)

<div class="topic-metadata">

**Author:** [@fromage9747](https://meta.discourse.org/u/fromage9747)\
**Replies:** 0\
**Last updated:** [November 20, 2022, 8:49am UTC](https://meta.discourse.org/t/discourse-sso-configuration/246178 "2022-11-20T08:49:15Z")

</div>

I have spent quite a bit of time reading the documentation and fiddling to no avail. I cannot get Discourse Connect/SSo to work with my app. I have created my own app that has a PWA, Android and iOS app. Now I want to…

---

## [Change link on register button with oidc connector](https://meta.discourse.org/t/change-link-on-register-button-with-oidc-connector/245144)

<div class="topic-metadata">

**Author:** [@ImaCrea](https://meta.discourse.org/u/ImaCrea)\
**Replies:** 0\
**Last updated:** [November 10, 2022, 2:11pm UTC](https://meta.discourse.org/t/change-link-on-register-button-with-oidc-connector/245144 "2022-11-10T14:11:47Z")

</div>

Hello there, Thanks for such a great piece of software and vibrant community! We’re using Discourse with Keycloak for the sso here. It’s all working well. There’s just something that could be even better to make it per…

---

## [How can add 2 or more discovery documents?](https://meta.discourse.org/t/how-can-add-2-or-more-discovery-documents/304275)

<div class="topic-metadata">

**Author:** [@ufukayyildiz](https://meta.discourse.org/u/ufukayyildiz)\
**Replies:** 1\
**Last updated:** [November 16, 2022, 12:18am UTC](https://meta.discourse.org/t/how-can-add-2-or-more-discovery-documents/304275 "2022-11-16T00:18:25Z")

</div>

how can add 2 or more discovery documents. i already added for google and now i need to add for yahoo.

---

## [Using OpenID Connect with User Flows in Azure B2C](https://meta.discourse.org/t/using-openid-connect-with-user-flows-in-azure-b2c/304271)

<div class="topic-metadata">

**Author:** [@TechGeek](https://meta.discourse.org/u/TechGeek)\
**Replies:** 3\
**Last updated:** [November 15, 2022, 10:40pm UTC](https://meta.discourse.org/t/using-openid-connect-with-user-flows-in-azure-b2c/304271 "2022-11-15T22:40:10Z")

</div>

Discourse OpenID Connect (OIDC) Does above steps works with User flows in Azure B2C, which are pre-built policy for use cases. Email address doesn’t get populated in the new user dialog when the authorization is return…

---

## [Sync SSO node.js implementation](https://meta.discourse.org/t/sync-sso-node-js-implementation/168333)

<div class="topic-metadata">

**Author:** [@zcuric](https://meta.discourse.org/u/zcuric)\
**Replies:** 1\
**Last updated:** [November 10, 2022, 3:16pm UTC](https://meta.discourse.org/t/sync-sso-node-js-implementation/168333 "2022-11-10T15:16:43Z")

</div>

Here is example with NodeJS if anyone needs it: 'use strict'; const axios = require('axios'); const crypto = require('crypto'); const qs = require('querystring'); const config = require('./config'); function getHash(d…

---

## [A free oauth solution?](https://meta.discourse.org/t/a-free-oauth-solution/244905)

<div class="topic-metadata">

**Author:** [@Sectros](https://meta.discourse.org/u/Sectros)\
**Replies:** 1\
**Last updated:** [November 8, 2022, 11:18pm UTC](https://meta.discourse.org/t/a-free-oauth-solution/244905 "2022-11-08T23:18:30Z")

</div>

I need to use discourse as one of a set of tools for a project. I need to have one oauth solution that identifies/authorizes a user across several platforms (discourse, mediawiki, consul project, and others) with a singl…

---

## [Any other way to authenticate user without redirecting to session/sso](https://meta.discourse.org/t/any-other-way-to-authenticate-user-without-redirecting-to-session-sso/244297)

<div class="topic-metadata">

**Author:** [@HariKannan](https://meta.discourse.org/u/HariKannan)\
**Replies:** 2\
**Last updated:** [November 7, 2022, 5:22pm UTC](https://meta.discourse.org/t/any-other-way-to-authenticate-user-without-redirecting-to-session-sso/244297 "2022-11-07T17:22:17Z")

</div>

Is there any other way to authenticate users to discourse using Discourse Connect without redirecting them to /session/sso. (Any apis or any other approaches). We have to check for user authentication on every page load…

---

## [SSO failover scenarios](https://meta.discourse.org/t/sso-failover-scenarios/243604)

<div class="topic-metadata">

**Author:** [@HariKannan](https://meta.discourse.org/u/HariKannan)\
**Replies:** 0\
**Last updated:** [November 1, 2022, 2:28pm UTC](https://meta.discourse.org/t/sso-failover-scenarios/243604 "2022-11-01T14:28:44Z")

</div>

Hi, we are using discourse as a forums tool. We have implemented SSO using DiscourseConnect, also we are providing anonymous access as well for the users. User can be able to land inside discourse using multiple ways …

---

## [Connection and discourse account creation without going on discourse](https://meta.discourse.org/t/connection-and-discourse-account-creation-without-going-on-discourse/242812)

<div class="topic-metadata">

**Author:** [@loukmane226](https://meta.discourse.org/u/loukmane226)\
**Replies:** 2\
**Last updated:** [October 25, 2022, 12:06pm UTC](https://meta.discourse.org/t/connection-and-discourse-account-creation-without-going-on-discourse/242812 "2022-10-25T12:06:00Z")

</div>

Hello I’m building a website with a discourse forum. I would like to make sure that users can connect to discourse from the site’s login page and also create an account if they don’t have one. Is it possible to do this …

---

## [Keycloak, Discourse and SAML again](https://meta.discourse.org/t/keycloak-discourse-and-saml-again/165732)

<div class="topic-metadata">

**Author:** [@nahimov](https://meta.discourse.org/u/nahimov)\
**Replies:** 1\
**Last updated:** [October 19, 2022, 3:31pm UTC](https://meta.discourse.org/t/keycloak-discourse-and-saml-again/165732 "2022-10-19T15:31:04Z")

</div>

I somehow configured Keycloak for SAML authorization with Discourse, even transparent user creation works. But now there is a problem with passing user fields. I configured the following field mapping in Keycloak SAML …

---

## [Integration with Wix.com membership to only let the paid member can access to Discourse](https://meta.discourse.org/t/integration-with-wix-com-membership-to-only-let-the-paid-member-can-access-to-discourse/167931)

<div class="topic-metadata">

**Author:** [@Koichi\_Tsuji](https://meta.discourse.org/u/Koichi_Tsuji)\
**Replies:** 6\
**Last updated:** [October 17, 2022, 1:55am UTC](https://meta.discourse.org/t/integration-with-wix-com-membership-to-only-let-the-paid-member-can-access-to-discourse/167931 "2022-10-17T01:55:58Z")

</div>

We are currently running our website on Wix.com and will introduce the paid membership, where the paid member is only able to access to the contents. I m wondering if any integration is available that the access to our …

---

## [Failed logins for SSO (Github, Google, etc)](https://meta.discourse.org/t/failed-logins-for-sso-github-google-etc/241962)

<div class="topic-metadata">

**Author:** [@Patrick\_David](https://meta.discourse.org/u/Patrick_David)\
**Replies:** 1\
**Last updated:** [October 15, 2022, 9:29am UTC](https://meta.discourse.org/t/failed-logins-for-sso-github-google-etc/241962 "2022-10-15T09:29:31Z")

</div>

We’ve recently encountered an issue with using SSO. In our users case it’s mostly Google or Github. Attempts kick an error: Message (93 copies reported) (github) Authentication failure! authenticity\_error: OmniAuth::…

---

## [Openid issues with Azure AD](https://meta.discourse.org/t/openid-issues-with-azure-ad/191205)

<div class="topic-metadata">

**Author:** [@jac\_rod](https://meta.discourse.org/u/jac_rod)\
**Replies:** 1\
**Last updated:** [October 13, 2022, 2:31pm UTC](https://meta.discourse.org/t/openid-issues-with-azure-ad/191205 "2022-10-13T14:31:02Z")

</div>

New to discourse, so I apologize if this is something simple I’m missing. I’m trying to setup OpenId with Azure B2C. Everything is working just fine, but the email address doesn’t get populated in the new user dialog w…

---

## [Can I use DiscourseConnect along with Discourse Native Registration?](https://meta.discourse.org/t/can-i-use-discourseconnect-along-with-discourse-native-registration/240889)

<div class="topic-metadata">

**Author:** [@Andy\_Katz1](https://meta.discourse.org/u/Andy_Katz1)\
**Replies:** 1\
**Last updated:** [October 4, 2022, 2:54pm UTC](https://meta.discourse.org/t/can-i-use-discourseconnect-along-with-discourse-native-registration/240889 "2022-10-04T14:54:16Z")

</div>

Is that possible? To have SSO and Discourse native registration enabled at the same time? I tested and it seems impossible. But perhaps there is some work-around someone can show me :slight\_smile: Thank you!

---

## [Mandatory login via oidc only for employees](https://meta.discourse.org/t/mandatory-login-via-oidc-only-for-employees/304281)

<div class="topic-metadata">

**Author:** [@xoxys](https://meta.discourse.org/u/xoxys)\
**Replies:** 2\
**Last updated:** [September 30, 2022, 7:55am UTC](https://meta.discourse.org/t/mandatory-login-via-oidc-only-for-employees/304281 "2022-09-30T07:55:26Z")

</div>

Hi, Is it intended that a user is still able to login with the local password? Let’s say a user creates an account via oidc login. At this point everything is fine, the user can log in via the oidc provider and the acco…

---

## [Login session timeout while trying to implement with SSO](https://meta.discourse.org/t/login-session-timeout-while-trying-to-implement-with-sso/240417)

<div class="topic-metadata">

**Author:** [@ujjawal0911](https://meta.discourse.org/u/ujjawal0911)\
**Replies:** 3\
**Last updated:** [September 29, 2022, 8:18pm UTC](https://meta.discourse.org/t/login-session-timeout-while-trying-to-implement-with-sso/240417 "2022-09-29T20:18:42Z")

</div>

So our frontend is React and Backend is Django and we want to use Discourse as a discussion platform for our application. The problem is whenever our backend API returns the redirected URL, it return login timeout even t…

---

## [Would It Be Possible To Implement A Non OAuth Login Scheme](https://meta.discourse.org/t/would-it-be-possible-to-implement-a-non-oauth-login-scheme/230549)

<div class="topic-metadata">

**Author:** [@SamGreenwood](https://meta.discourse.org/u/SamGreenwood)\
**Replies:** 3\
**Last updated:** [September 14, 2022, 4:57pm UTC](https://meta.discourse.org/t/would-it-be-possible-to-implement-a-non-oauth-login-scheme/230549 "2022-09-14T16:57:19Z")

</div>

I’m wondering if it would be possible to implement Steve Gibson’s SQRL into my forum without having to bridge it to OAuth.

---

## [How to know if user has SSO](https://meta.discourse.org/t/how-to-know-if-user-has-sso/238926)

<div class="topic-metadata">

**Author:** [@tiagomatosweb](https://meta.discourse.org/u/tiagomatosweb)\
**Replies:** 2\
**Last updated:** [September 14, 2022, 6:50am UTC](https://meta.discourse.org/t/how-to-know-if-user-has-sso/238926 "2022-09-14T06:50:58Z")

</div>

Hi, I am currently fetching users via API using admin/users/list/active.json However, I would like to know if a particular user has DiscourseConnect info. How would I approach that?

[Previous page](https://meta.discourse.org/c/support/sso/24.md?page=7)

[Next page](https://meta.discourse.org/c/support/sso/24.md?page=9)
