Bug 1333161

Summary: mod_auth_mellon loaded before mod_auth_openidc makes the latter not be recognized for "AuthType openid-connect"
Product: [Fedora] Fedora Reporter: John Dennis <jdennis>
Component: mod_auth_mellonAssignee: John Dennis <jdennis>
Status: CLOSED ERRATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: 23CC: extras-qa, jdennis, puiterwijk, ssorce
Target Milestone: ---Keywords: Reopened
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: mod_auth_mellon-0.11.1-2.fc23 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: 1332729 Environment:
Last Closed: 2016-05-15 05:31:08 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1332729    
Bug Blocks: 1333160    

Description John Dennis 2016-05-04 19:34:59 UTC
+++ This bug was initially created as a clone of Bug #1332729 +++

Description of problem:
If I install both mod_auth_mellon and mod_auth_openidc, mod_auth_openidc does not get triggered for "AuthType openid-connect".
If, however, I rename /etc/httpd/conf.modules.d/10-auth_mellon.conf to 11-auth_mellon.conf, it works.

Version-Release number of selected component (if applicable):
mod_auth_mellon-0.12.0-1.fc25
mod_auth_openidc-1.8.8-4.fc25

How reproducible:
Consistent

Steps to Reproduce:
1. Install mod_auth_mellon and mod_auth_openidc
2. Add a "AuthType openid-connect; Require valid-user" to the config
(and minimal mod_auth_openidc configuration)

Actual results:
Unauthorized page

Expected results:
OpenID Connect protocol flow starting.

Additional info:

--- Additional comment from John Dennis on 2016-05-03 20:00:05 EDT ---

Patrick:

Would you please test the following scratch-build:

http://koji.fedoraproject.org/koji/taskinfo?taskID=13909408

And let me know if it solves your problem.

--- Additional comment from Patrick Uiterwijk on 2016-05-03 20:04:53 EDT ---

John:

This scratch build fixes my problem yes.
Thank you very much for the fast response!

--- Additional comment from John Dennis on 2016-05-03 20:24:52 EDT ---

You're welcome.

Good to hear, I'll prepare regular builds tomorrow.

--- Additional comment from John Dennis on 2016-05-04 15:25:58 EDT ---

This is likely the same issue as described in bug #1317019 which was filed against RHEL 6.8 with mellon-0.8.0

Comment 1 Fedora Update System 2016-05-04 19:45:25 UTC
mod_auth_mellon-0.11.1-2.fc23 has been submitted as an update to Fedora 23. https://bodhi.fedoraproject.org/updates/FEDORA-2016-9341bfd01e

Comment 2 Fedora Admin XMLRPC Client 2016-05-04 23:18:12 UTC
This package has changed ownership in the Fedora Package Database.  Reassigning to the new owner of this component.

Comment 3 Fedora Update System 2016-05-05 15:52:26 UTC
mod_auth_mellon-0.11.1-2.fc23 has been pushed to the Fedora 23 testing repository. If problems still persist, please make note of it in this bug report.
See https://fedoraproject.org/wiki/QA:Updates_Testing for
instructions on how to install test updates.
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2016-9341bfd01e

Comment 4 Fedora Update System 2016-05-15 05:31:06 UTC
mod_auth_mellon-0.11.1-2.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report.