January 29, 2020 at 8:30 pm #27503
I managed to build a tree that in certain condition call a chain for device registration (push). However, it asks for authentication again (user already authenticated in the first step of tree).
Is it possible to avoid that? So, calling the chain from a tree and keep the user session?
Thanks.January 30, 2020 at 6:48 pm #27508
Can you share your tree and chain?
Are you calling the chain from the successful url node?
There appears to be a community Node in the marketplace now for Push registration
If the tree is causing the prompt, you could use Get Session Data node. But for the chain, have you looked at the example from the docs:
We may need to review your chain and simplify it.January 30, 2020 at 6:57 pm #27509
Tree is exactly the same as this sample https://backstage.forgerock.com/docs/am/6/authentication-guide/#figure-trees-push-example
I’m using the Failure URL node attached to the Failure node (as shown in the example). I tried changing to Success URL and Success node but the registration page is not show, it goes directly to the profile page.
1. Data Store (requisite)
2. Push Register (requisite) (module: ForgeRock Authenticator (Push) Registration)
I’m going to try the community Node.
Thanks!January 30, 2020 at 9:54 pm #27511
After some more digging, I found in this case you fail authN so lose all your authN context. So when you move on to the chain to register the device you need to authenticate. I’ll look to update the Doc about that.January 31, 2020 at 12:28 am #27513
So, the best option is to use the community Push Registration for trees, right?
I’m trying to compile that code but it seems my backstage account doesn’t have enough rights, I’m getting access denied error when it tries to download some dependencies.
Access denied to: http://maven.forgerock.org/repo/internal-releases/org/forgerock/am/openam-auth-trees/6.5.0/openam-auth-trees-6.5.0.pom, ReasonPhrase: Forbidden.January 31, 2020 at 7:28 pm #27520
The other option would be if you can start in a chain, then use Get Session Data node to finish in the tree. The order of operations may not make much sense for that though in this case. I’ll check with the source access teamJanuary 31, 2020 at 7:32 pm #27521
Source team suggsted seeing if you can setup your .m2 file to access the private mvn repos:February 4, 2020 at 4:09 pm #27539
Thanks, that helped. Although I had to use the mvnrepository in some cases.
You must be logged in to reply to this topic.