微信公众号搜"智元新知"关注
微信扫一扫可直接关注哦!

从KEYCLOAK登录页面重写URL的最后一部分

如何解决从KEYCLOAK登录页面重写URL的最后一部分

我已经设置了一个带有keycloak和openresty的泊坞窗,以Nginx作为Web服务器来处理帐户。 一切都按预期工作,但我唯一的问题是我找不到重写Keycloack登录页面URL的方法

我需要重写

http://test-site.myown.lan:8080/auth/realms/test-site/protocol/openid-connect/auth?response_type=code&client_id=test-login&state=56ccae05bad8e93b09297c3907db9591&redirect_uri=http%3A%2F%2Ftest-site.int.master.lan%2Flogin%2Fcallback&nonce=4f1ecb367a9067e5697812c48f2f9b9e&scope=openid%20email%20profile

进入

http://test-site.myown.lan/auth/realms/test-site

因此缩短了最后一部分并隐藏了端口。

我尝试了重写规则,但没有看到URL的任何更改。

我该如何实现?

编辑: 这是Nginx的配置

user Nginx;
worker_processes auto;
error_log /var/log/Nginx/error.log;
pid /run/Nginx.pid;

events {
worker_connections 1024;
}

http {
log_format  main  '$remote_addr - $remote_user [$time_local] "$request" '
                  '$status $body_bytes_sent "$http_referer" '
                  '"$http_user_agent" "$http_x_forwarded_for"';

access_log  /var/log/Nginx/access.log  main;

sendfile            on;
tcp_nopush          on;
tcp_nodelay         on;
keepalive_timeout   65;
types_hash_max_size 2048;
add_header          x-frame-options SAMEORIGIN;

include            /usr/local/openresty/Nginx/conf/mime.types;
#default_type        application/octet-stream;

# set search paths for pure Lua external libraries (';;' is the default path):
lua_package_path '${prefix}/lualib/ngx/?.lua;${prefix}/lualib/resty/?.lua;;';
# set search paths for Lua external libraries written in C (can also use ';;'):
lua_package_cpath '${prefix}/lualib/?.so;${prefix}/luajit/lib:/?.so;;';
# use internal dns as hostname resolver
resolver xxxxxxxxxx;
# cache for discovery Metadata documents
lua_shared_dict discovery 1m;
# cache for JWKs
lua_shared_dict jwks 1m;
# Turning Lua Code Cache Off
lua_code_cache off;

server {
    listen 80;
    server_name *.myown.lan;
    return 301 https://test-site.myown.lan:443$request_uri;
}


server {
    listen      443 ssl default_server;

  server_name test-site.myown.lan;
    root        /opt/Nginx/html;

    # disabled caching so the browser won't cache the site.
    expires     0;
    add_header      Pragma "no-cache";
    add_header      Cache-Control "private,max-age=0,no-cache,no-store";

    # enables SSLv3/TLSv1,but not SSLv2 which is weak and should no longer 
  be used.

    ssl_certificate /etc/ssl/certs/wildcard.pem;
    ssl_certificate_key /etc/ssl/certs/wildcard.key;
    ssl on;
    ssl_session_cache builtin:1000 shared:SSL:10m;
    ssl_protocols SSLv3 TLSv1 TLSv1.1 TLSv1.2;
    ssl_ciphers ALL;
    ssl_prefer_server_ciphers on;

    # set session secret
    set $session_secret secret;




  location / {
    access_by_lua_file /usr/local/openresty/Nginx/conf/lua/cs-login.lua;


  }

  location /assets {
    root       /opt/Nginx/html;
  }

  # redirect server error pages to the static pages
  error_page 401 /401.html;
  location = /401.html {
    root       /opt/Nginx/html;
  }
  error_page 403 /403.html;
  location = /403.html {
    root       /opt/Nginx/html;
  }
  error_page 404 /404.html;
  location = /404.html {
    root       /opt/Nginx/html;
  }
  error_page 405 /405.html;
  location = /405.html {
    root       /opt/Nginx/html;
  }
  error_page 500 502 503 504 /50x.html;
  location = /50x.html {
    root       /opt/Nginx/html;
  }


  location /name2 {
    root       /opt/html;
    access_by_lua_file /usr/local/openresty/Nginx/conf/lua/name2.lua;
  }


  location /name4 {
    root       /opt/html;
    access_by_lua_file /usr/local/openresty/Nginx/conf/lua/name4.lua;
   }
 }
}

版权声明:本文内容由互联网用户自发贡献,该文观点与技术仅代表作者本人。本站仅提供信息存储空间服务,不拥有所有权,不承担相关法律责任。如发现本站有涉嫌侵权/违法违规的内容, 请发送邮件至 dio@foxmail.com 举报,一经查实,本站将立刻删除。