Comments (1)
You need to deactivate the user not only in the identity provider, but also in the Nexus app itself. This is the logic of revoking rights when authorizing through third-party identity providers, see https://help.sonatype.com/en/saml.html#revoking-user-access:
Note that SAML does not allow notification of downstream systems when a user in the identity provider is deactivated. However, as soon as a user is deactivated in the identity provider, they will not be able to log into Sonatype Nexus Repository using SAML.
If these users have user tokens, those will remain present in Sonatype Nexus Repository.
The user's status when authorizing using tokens is checked by an SQL query in shiro.ini#L76
from nexus-sso.
Related Issues (20)
- 500 Internal Server Error on SSO login (Force re-authenticate) HOT 3
- User Authentication Tokens not working HOT 2
- Nuget API Key not working after upgrading to 3.58.1-02 HOT 2
- Context Path Support HOT 3
- User ID Format HOT 2
- NuGet API Key access issue HOT 10
- Microsoft EntraID Error 500 (Attributes mapping) HOT 7
- SAML for authentification and LDAP for authorization HOT 6
- Error 500 Internal Server Error (after 3.58.1) HOT 23
- Azure Entra ID SAML Integration HOT 1
- SAML Role Permissions are Not Applied HOT 5
- 500 Internal Server Error (Attributes mapping) HOT 13
- Error 500 Internal Server Error (WantAuthnRequestsSigned="false" ) HOT 8
- CVE-2024-4956 (fixed in version 3.68.0-04) HOT 7
- update to new version (done) HOT 1
- Errors building for version 3.70.1-02 (Maven dependency) HOT 1
- Warning for CVE-2024-4956 Nexus Repository 3 Vulnerability still shows on UI HOT 1
- Upgrade to `3.71.0` to enable support for the H2 database HOT 1
- Nexus is capped at 20k requests per day HOT 4
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from nexus-sso.