FusionAuth
    • Home
    • Categories
    • Recent
    • Popular
    • Pricing
    • Contact us
    • Docs
    • Login
    1. Home
    2. Categories
    3. Q&A
    Log in to post
    Load new posts
    • Recently Replied
    • Recently Created
    • Most Posts
    • Most Votes
    • Most Views
    • S

      Unsolved This topic is deleted!

      • • silumanmangkok6
      1
      0
      Votes
      1
      Posts
      2
      Views

      No one has replied

    • S

      Unsolved This topic is deleted!

      • • silumanmangkok6
      1
      0
      Votes
      1
      Posts
      2
      Views

      No one has replied

    • S

      Unsolved This topic is deleted!

      • • silumanmangkok6
      1
      0
      Votes
      1
      Posts
      2
      Views

      No one has replied

    • S

      Unsolved This topic is deleted!

      • • silumanmangkok6
      1
      0
      Votes
      1
      Posts
      2
      Views

      No one has replied

    • S

      Unsolved This topic is deleted!

      • • silumanmangkok6
      1
      0
      Votes
      1
      Posts
      2
      Views

      No one has replied

    • X

      Unsolved This topic is deleted!

      • • xjk7eei0p
      1
      0
      Votes
      1
      Posts
      13
      Views

      No one has replied

    • Q

      Unsolved Logout behaviour set to All Applications but other applications logout endpoint not called

      • • quent
      2
      0
      Votes
      2
      Posts
      4.2k
      Views

      danD

      @quent Can you tell us more about your integration?

      The way that the logout from all applications works is it creates multiple iframes with the source of each iframe as the logout URL.

      Is the logout URL of the second being called at all (if you look at the request log)?

      What browser are you using?

      What version of FusionAuth are you using?

      Are you testing in a remote environment or on localhost?

    • J

      Unsolved Migration to FusionAuth from ASPNET_Membership provider

      • • jcobb
      1
      0
      Votes
      1
      Posts
      246
      Views

      No one has replied

    • D

      Unsolved Open identity provider login in new window

      • • david.haerer
      1
      0
      Votes
      1
      Posts
      352
      Views

      No one has replied

    • Q

      Solved SSO mechanism

      • • quent
      5
      0
      Votes
      5
      Posts
      4.1k
      Views

      Q

      It is working now, had some issue on my side 🙂

    • A

      Unsolved This topic is deleted!

      • • albertwan232
      1
      0
      Votes
      1
      Posts
      3
      Views

      No one has replied

    • H

      Unsolved Fusionauth Installation Issue

      • • hanumant.sidraya
      3
      0
      Votes
      3
      Posts
      517
      Views

      B

      I have absolutely the same problem.
      Installation on Windows 10.

    • C

      Unsolved Pending Link strategy does not complete

      oauth pending link not linked authenticated • • chrissmueller328
      2
      0
      Votes
      2
      Posts
      1.3k
      Views

      joshuaJ

      Hi @chrissmueller328,

      You will want to review our linking strategies. When this occurs, oftentimes, this is due to custom mapping needed (you can see this in our discord doc).

      https://fusionauth.io/docs/v1/tech/identity-providers/#linking-strategy-examples

      The event log is another great place to look to see how your user is or is not being linked/created.

      You can also look at our doc for discord as an IDP

      https://fusionauth.io/docs/v1/tech/identity-providers/openid-connect/discord

      Hope this helps!
      Josh

    • danD

      Unsolved Can you share applications between tenants?

      • • dan
      2
      0
      Votes
      2
      Posts
      413
      Views

      danD

      No, you cannot.

      However, it is worth diving a bit more into the use of the word "application", which is overloaded.

      There is:

      your application, represented by a webapp or code or a third party app your application configuration, stored in FusionAuth

      Application configurations cannot span tenants. They are scoped to the tenant. However, if you need to have the same config (redirect urls, client ids, etc), you could script it.

    • J

      Unsolved This topic is deleted!

      • • jitendra.sabat
      1
      0
      Votes
      1
      Posts
      5
      Views

      No one has replied

    • danD

      Unsolved Does FusionAuth support MSAL or ADAL

      • • dan
      2
      0
      Votes
      2
      Posts
      389
      Views

      danD

      FusionAuth does not use either ADAL or MSAL directly. What FusionAuth does allow for is integration using OIDC, SAML, or custom logic with a connector. Essentially, FusionAuth can act as the Service Provider deferring authentication decisions to an external source via these protocols.

      It appears that MSAL integrates with the OIDC specification, based on a quick read of their documentation, so you may want to consider using an OIDC Identity provider here.

      https://fusionauth.io/docs/v1/tech/apis/identity-providers/

      Another option is to use connectors. With connectors, you can write your own custom integration logic to validate auth against an external source (be it MSAL, ADAL, or something else). Our documentation here covers examples and some of the differences from an Identity Provider.

      https://fusionauth.io/docs/v1/tech/apis/connectors/

    • A

      Unsolved Refresh Token Clarity

      • • alan.wood
      4
      0
      Votes
      4
      Posts
      919
      Views

      danD

      @alan-wood Hmmm.

      First, thanks for filing the issue. I appreciate it.

      but there is no call when the one-time JWT refresh token is "re-used".

      Second, I'm pretty sure the webhook idea will work. Here's my thoughts:

      User 123 logs in, gets refresh token A Use refresh token to get a new (access token, refresh token) pair System catches jwt refresh event and records token A for this user (so the userId 123, token A pair). It generates token B. Use refresh token A again to attempt to get a new pair, this fails [so far so good] The webhook should fire again and records that token A was used again (by looking up the refresh token value in the pair). Uh-oh! Fire off an event to revoke all refresh tokens for the user 123: https://fusionauth.io/docs/v1/tech/apis/jwt#revoke-refresh-tokens Using refresh token B will fail, because all refresh tokens are revoked.

      Have you tried this approach? What am I missing?

    • Z

      Unsolved This topic is deleted!

      • • zeylanceylon
      1
      0
      Votes
      1
      Posts
      6
      Views

      No one has replied

    • S

      Solved Is there any limitation to create a user per application?

      • • sujata.kattimani
      2
      0
      Votes
      2
      Posts
      1.6k
      Views

      danD

      @sujata-kattimani No limits.

      Here's a list of FusionAuth limits: https://fusionauth.io/docs/v1/tech/reference/limitations

      From the "What's not limited" section:

      All other objects and configuration, including but not limited to the following, are limited only by the resources of your system: Users Applications Tenants Roles Groups Identity Providers such as SAML or OIDC connections API keys to allow for programmatic configuration of and interaction with FusionAuth Supported languages/locales Signing and verifying keys MFA methods per user

      You are, of course, limited by your resources. If you try to load 100M users into a FusionAuth instance running in 256M of RAM, there's no guarantees the server won't fall over.

      Also, if you are using the Starter license, you have a limit on MAUs. But for all other editions, no limits on users.

    • S

      Unsolved 2FA

      • • stephen.saucier 0
      4
      0
      Votes
      4
      Posts
      408
      Views

      S

      @dan I have filed an issue here: https://github.com/FusionAuth/fusionauth-issues/issues/1627