SSO login for an existing admin whose token lacked the admin role was silently demoting the account, locking admins out of the dashboard. Missing admin role now leaves the flag alone unless RevokeAdminWithoutRole is enabled. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
37 lines
1.9 KiB
JSON
37 lines
1.9 KiB
JSON
[
|
|
{
|
|
"guid": "96badb44-9940-4ff0-befc-5f987159152c",
|
|
"name": "OIDC Auth",
|
|
"description": "Adds OpenID Connect (OIDC) single sign-on to Jellyfin. Supports any spec-compliant provider (Authelia, Authentik, Keycloak, Pocket ID, Google, ...), automatic user creation, and role based admin/access mapping.",
|
|
"overview": "Log in to Jellyfin with an OpenID Connect provider",
|
|
"owner": "pascallinxweiler",
|
|
"category": "Authentication",
|
|
"versions": [
|
|
{
|
|
"version": "1.0.3.0",
|
|
"changelog": "Admin role mapping now only grants admin by default. New opt-in setting 'Also revoke admin when the admin role is missing' restores the old revoking behavior.",
|
|
"targetAbi": "10.11.0.0",
|
|
"sourceUrl": "https://git.linxweiler.xyz/pascallinxweiler/jellyfinplugin/raw/branch/main/dist/oidc-auth_1.0.3.0.zip",
|
|
"checksum": "8e1435d2d4a1587797f9c0af53f6fca2",
|
|
"timestamp": "2026-07-13T13:00:00Z"
|
|
},
|
|
{
|
|
"version": "1.0.2.0",
|
|
"changelog": "Log OIDC claims and admin mapping decisions; role comparison is now case-insensitive.",
|
|
"targetAbi": "10.11.0.0",
|
|
"sourceUrl": "https://git.linxweiler.xyz/pascallinxweiler/jellyfinplugin/raw/branch/main/dist/oidc-auth_1.0.2.0.zip",
|
|
"checksum": "343bcda662a3cdd1e36391222391d2d5",
|
|
"timestamp": "2026-07-13T12:30:00Z"
|
|
},
|
|
{
|
|
"version": "1.0.1.0",
|
|
"changelog": "Rebuilt for Jellyfin 10.11 (net9.0).",
|
|
"targetAbi": "10.11.0.0",
|
|
"sourceUrl": "https://git.linxweiler.xyz/pascallinxweiler/jellyfinplugin/raw/branch/main/dist/oidc-auth_1.0.1.0.zip",
|
|
"checksum": "8095740b87cf862ad41bc50ccbdb7443",
|
|
"timestamp": "2026-07-13T12:00:00Z"
|
|
}
|
|
]
|
|
}
|
|
]
|