this post was submitted on 22 Feb 2025
12 points (92.9% liked)
Selfhosted
60426 readers
478 users here now
A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don't control.
Rules:
-
Be civil.
-
No spam.
-
Posts are to be related to self-hosting.
-
Don't duplicate the full text of your blog or readme if you're providing a link.
-
Submission headline should match the article title.
-
No trolling.
-
Promotion posts require active participation, with an account that is at least 30 days old. F/LOSS without a paywall has exceptions, with requirements. See the rules link for details.
Resources:
- selfh.st Newsletter and index of selfhosted software and apps
- awesome-selfhosted software
- awesome-sysadmin resources
- Self-Hosted Podcast from Jupiter Broadcasting
Any issues on the community? Report it using the report flag.
Questions? DM the mods!
founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
I had the exact same issue.
Basically, what I wanted to do, was to have my Authentik user created as an admin, and the others to be created as users (as anyway, I would be able to change the roles of the other users from my user).
Here's how I fixed it :
1 - In left navigation menu, went to "Directory/Groups", then created a new "group" called "ocisAdmin".
2 - In left navigation menu, went to "Directory/Users", then assigned my user to this new group.
3 - In left navigation menu, went to "Customization/Property Mappings", then, created a new "Scope Mapping" (penultimate option on my UI). Gave it a name that speaks to me ("oCIS email scope extended", if you want to know), "email" as "Scope Name", and this expression:
4 - In left navigation menu, went to "Applications/Providers", opened each oCIS provider, clicked "Edit", opened the sub-menu "Advanced protocol settings", selected my custom "Property mapping" in the left "Scopes" menu, and clicked on the right pointing arrow to have it selected for those providers.
Also, make SURE that you have this property set:
Now, my users are properly populated into oCIS.
I still need to figure out how to make the applications work, but I have faith I'll figure it out :)
Hope that helped !