From 645c50b23423d46d1df48012b5a70b92412b7a96 Mon Sep 17 00:00:00 2001 From: Thomas Telleis Date: Wed, 30 Sep 2026 15:25:30 +0200 Subject: [PATCH 1/3] add redirect URIs Signed-off-by: Thomas Telleis --- .../configuration/production-ready-settings/index.md | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/docs/deploy-and-configure/configuration/production-ready-settings/index.md b/docs/deploy-and-configure/configuration/production-ready-settings/index.md index cc6942189..3e7dbad6b 100644 --- a/docs/deploy-and-configure/configuration/production-ready-settings/index.md +++ b/docs/deploy-and-configure/configuration/production-ready-settings/index.md @@ -20,6 +20,13 @@ As valid-logout-redirect-uri we suggest the base basic URL of your deployment. e Once you restrict these URLs in Keycloak you might see error messages in your keycloak log indicating that those redirect uri's are not valid. Please update the settings accordingly. +For fine granular set the Root URL to you base like `` . Then add these to the clients, depending on the purpose: +- For Explore: `/dataplatform/login/oauth2/code/keycloak` +- For DataIntegration/Build: `/dataintegration/login` +- For Marketplace: `marketplace/auth/callback` +- For Graph Insights: `/graphinsights/login/oauth2/code/keycloak` + + ![Keycloak: Client Settings: Valid Redirect URLs](23-1-keycloak-client-settings.png) ### Explore backend (DataPlatform) valid post redirect settings From e210def4a6ce28940c94a25c4a6b30eddebd87c4 Mon Sep 17 00:00:00 2001 From: Thomas Telleis Date: Wed, 30 Sep 2026 15:27:01 +0200 Subject: [PATCH 2/3] add base URI Signed-off-by: Thomas Telleis --- .../configuration/production-ready-settings/index.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/deploy-and-configure/configuration/production-ready-settings/index.md b/docs/deploy-and-configure/configuration/production-ready-settings/index.md index 3e7dbad6b..0f739e5de 100644 --- a/docs/deploy-and-configure/configuration/production-ready-settings/index.md +++ b/docs/deploy-and-configure/configuration/production-ready-settings/index.md @@ -20,7 +20,7 @@ As valid-logout-redirect-uri we suggest the base basic URL of your deployment. e Once you restrict these URLs in Keycloak you might see error messages in your keycloak log indicating that those redirect uri's are not valid. Please update the settings accordingly. -For fine granular set the Root URL to you base like `` . Then add these to the clients, depending on the purpose: +For fine granular set the Root URL to you base like `https://cmem.example.net` . Then add these to the clients, depending on the purpose: - For Explore: `/dataplatform/login/oauth2/code/keycloak` - For DataIntegration/Build: `/dataintegration/login` - For Marketplace: `marketplace/auth/callback` From 9188dce136c558e707d272d6ef834a7cc77474bb Mon Sep 17 00:00:00 2001 From: Thomas Telleis Date: Wed, 30 Sep 2026 15:31:02 +0200 Subject: [PATCH 3/3] add missing linebreak Signed-off-by: Thomas Telleis --- .../configuration/production-ready-settings/index.md | 1 + 1 file changed, 1 insertion(+) diff --git a/docs/deploy-and-configure/configuration/production-ready-settings/index.md b/docs/deploy-and-configure/configuration/production-ready-settings/index.md index 0f739e5de..5577dad5a 100644 --- a/docs/deploy-and-configure/configuration/production-ready-settings/index.md +++ b/docs/deploy-and-configure/configuration/production-ready-settings/index.md @@ -21,6 +21,7 @@ Once you restrict these URLs in Keycloak you might see error messages in your ke Please update the settings accordingly. For fine granular set the Root URL to you base like `https://cmem.example.net` . Then add these to the clients, depending on the purpose: + - For Explore: `/dataplatform/login/oauth2/code/keycloak` - For DataIntegration/Build: `/dataintegration/login` - For Marketplace: `marketplace/auth/callback`