By: hyunwoo kim named 27 Nov 2019 at 8:19 p.m. CST

5 Responses
hyunwoo kim gravatar
Hi. I want to restrict access to OIDC Clients through UMA. For example, I would like to create a configuration where three OIDC Clients are registered and the user is allowed normal access to two Clients and denied access to the other. I've read the 'UMA Authorization Server (AS)' part of the Gluu 4.0 version of Docs. But I do not understand well. It explains what the UMA menus mean, but there is no explanation in any way to use it. Can you explain to me in detail how to set up UMA once?

By Michael Schwartz Account Admin 27 Nov 2019 at 10:17 p.m. CST

Michael Schwartz gravatar
The quickest way would be to use Gluu Gateway. The Gluu Server issues tokens (either UMA or OAuth) that use the scope or other JSON claims to specify permissions granted. It's the responsibility of the Gateway to enforce access (based on the information in the token). Also, UMA is used when you need to interact with the user, post authentication. If you have a binary decision to allow access, you can just use OAuth and OPA in the gateway. see the gluu blog on Axiomatics for a partial overview. Also, see the Gluu Gateway docs on OpenID. After that, we can schedule a call to review. Thu-Fri is a holiday in the US.

By hyunwoo kim named 28 Nov 2019 at 11:02 p.m. CST

hyunwoo kim gravatar
Answer confirmed Sorry for bothering you on your holiday. But I have no idea to use Gluu Gateway yet. Can you tell me how to use Gluu's UMA?

By Meghna Joshi staff 29 Nov 2019 at 2:08 a.m. CST

Meghna Joshi gravatar
Hi hyunwoo kim, Please take a look at Gluu-Gateway docs here https://gluu.org/docs/gg/. It will guide you how to use Gluu Gateway and configure UMA security. Best Regards, Meghna Joshi

By hyunwoo kim named 29 Nov 2019 at 6:58 p.m. CST

hyunwoo kim gravatar
Let's check the documentation. Thank you for your answer. We will open a new ticket for any further questions.

By hyunwoo kim named 03 Dec 2019 at 12:37 a.m. CST

hyunwoo kim gravatar
Hi.. I have tried several things to configure Gluu's UMA for a few days. But the exact guide doesn't exist, and YouTube's videos are too old. Please give me a detailed guide. I am an employee of a company that has partnered with Gluu. I have no contact points with Gluu staff, so I leave support. Please help.