There is 1 comment.
 
 
OpenId Connect / cid:jira-generated-image-avatar-cfe0e33f-7605-41ca-ad97-7490065a5d94 OIDC-256 Open

Authenticator Callback - Cannot invoke "javax.servlet.http.HttpSession.getId()" because "httpSession" is null

 
View issue   ·   Add comment
 

1 comment

 
cid:jira-generated-image-avatar-6d67fa09-3e12-44b4-9344-15df1d5d13f3 Michael Schröder on 01/Sep/25 09:32
 

I think, it is an issue with xwiki (core) https://www.xwiki.org/xwiki/bin/view/Documentation/AdminGuide/Configuration/#HTrusteddomains configurations and not the extension. I set the Kecloak domain in the configuration, but it seems to be ignored.
The Browser log shows: "Cookie “JSESSIONID” with the “SameSite” attribute value “Lax” or “Strict” was omitted because of a cross-site redirect."

Many thanks for your support.