[pve-devel] applied: [PATCH firewall] increase default nf_conntrack_max to kernel default

2021-07-08 Thread wb
Hello Thomas, Currently with Proxmox, I have a Kubernetes node running on LXC. However, I have encountered an issue on the Container Network Interface (CNI) side and in order for it to work, the parameter /proc/sys/net/netfilter/nf_conntrack_max must be raised. You know that the container sett

[pve-devel] RE : RE : [PATCH] [PATCH pve-access-control] SSO feature:login with SAMLv2

2021-06-02 Thread wb
ack, Sincerely, Julien Blais De : Dietmar Maurer Envoyé le :mercredi 2 juin 2021 11:00 À : wb; Proxmox VE development discussion Objet :Re: RE : [pve-devel] [PATCH] [PATCH pve-access-control] SSO feature:login with SAMLv2 > > I wonder why you want to store temporary data in /etc/pve

[pve-devel] RE : [PATCH] [PATCH pve-access-control] SSO feature:login with SAMLv2

2021-06-01 Thread wb
> I wonder why you want to store temporary data in /etc/pve/tmp/saml. Wouldn't > it we good enough > to store that on the local file system? On the one hand, I enjoyed reusing your work. On the other hand, I think it is more secure to put this kind of data in /etc/pve/tmp/saml than in /tmp/saml/

[pve-devel] RE : [PATCH] [PATCH pve-http-server] SSO feature: loginwith SAMLv2

2021-05-31 Thread wb
Hi, You can find the instructions on your forum at this address with keycloak as IdP. ⇨ https://forum.proxmox.com/threads/auth-module-openid-connect.79987/#post-390606 Keycloak is very easy to set up. You can even start from a docker container. I will test later with lemonldap-ng to see if my

[pve-devel] RE : [PATCH] [PATCH pve-access-control] SSO feature: loginwith SAMLv2

2021-05-28 Thread wb
Hello, The 4th page has been signed and sent. Sincerely, Julien Blais De : Thomas Lamprecht Envoyé le :vendredi 28 mai 2021 09:38 À : Proxmox VE development discussion; Julien BLAIS Objet :Re: [pve-devel] [PATCH] [PATCH pve-access-control] SSO feature: loginwith SAMLv2 Hi! Thanks for sending

[pve-devel] RE : RE : RE : pve-devel Digest, Vol 132, Issue 53

2021-05-26 Thread wb
tomorrow or the day after at the earliest. Sincelery, Julien BLAIS De : Thomas Lamprecht Envoyé le :mercredi 26 mai 2021 08:22 À : wb; Proxmox VE development discussion Objet :Re: RE : [pve-devel] RE : pve-devel Digest, Vol 132, Issue 53 Hi, On 25.05.21 22:50, wb wrote: > Sorry, the first

[pve-devel] RE : RE : pve-devel Digest, Vol 132, Issue 53

2021-05-25 Thread wb
> running does not mean working... Ok, but starting from an installation, I doubt :). De : Thomas Lamprecht Envoyé le :mardi 25 mai 2021 08:11 À : Proxmox VE development discussion; wb Objet :Re: [pve-devel] RE : pve-devel Digest, Vol 132, Issue 53 On 24.05.21 23:45, wb wrote: > H

[pve-devel] RE : pve-devel Digest, Vol 132, Issue 53

2021-05-24 Thread wb
roxmox.com When replying, please edit your Subject line so it is more specific than "Re: Contents of pve-devel digest..." Today's Topics: 1. cfs-locked 'authkey' operation: pve cluster filesystem not online (wb) 2. Re: cfs-locked 'authkey

[pve-devel] cfs-locked 'authkey' operation: pve cluster filesystem not online

2021-05-23 Thread wb
Hello to all. I have the plan to implement the SSO authentication feature with the SAML protocol. However, I have an error that prevents me from validating the authentication process. It is about the locks. The first step is to store the request_saml_id. If I try to create a file by your librar