Ad Widget

Collapse

Problem with Zabbix and Keycloak (SSO)

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Lycos
    Junior Member
    • Jun 2024
    • 3

    #1

    Problem with Zabbix and Keycloak (SSO)

    So, I'm the one who drew the short straw on my project and I am working on integrating Keycloak and Zabbix. I integrated it with Splunk with no problem, but Zabbix likes to be a challenge.

    Here's the overall scenario. It is a straight http connection between Zabbix 6.0 and Keycloak 16.1.1. I click on the "Sign in with Single Sign-On link. It takes me to the Keycloak login page. When I authenticate with Keycloak, I get the following from Zabbix:

    You are not logged in
    - No permission for system access
    -The parameter "username" is missing from the user attributes.

    Here are the Zabbix settings:


    I've searched all over the Internet and tried the options on there. I've tried changing the Username attributes to everything that is recommended.in the documentation. Still, the problem persists.

    Any recommendations would be appreciated.
  • Lycos
    Junior Member
    • Jun 2024
    • 3

    #2
    Click image for larger version

Name:	Zabbix Error.png
Views:	1071
Size:	56.1 KB
ID:	487225 For some reason, it dropped my screenshot of the Zabbix configuration. So, let me manually type out what is in the SAML Settings dialog box.

    Enable SAML authentication is checked.
    IdP entity ID is http://172.16.22.207:8080/auth/realms/example.com
    SSO service URL is http://172.16.22.207:8080/auth/reals.../protocol/saml
    Username attribute is username
    SP entity ID is zabbix (which matches the Keycloak Client Id)
    Case-sensitive login is checked.
    Last edited by Lycos; 10-07-2024, 20:04.

    Comment

    • Lycos
      Junior Member
      • Jun 2024
      • 3

      #3
      I was getting an error before.
      Attached Files

      Comment

      Working...