Not able to login PAIF portal via OIDC
search cancel

Not able to login PAIF portal via OIDC

book

Article ID: 443412

calendar_today

Updated On:

Products

VCF Private AI Services

Issue/Introduction

- OIDC integration using Authentik

- No configuration issue found in both PAIF and Authentik

-  After entering OIDC user credentials, the page redirects back to the PAIF login UI without displaying an error. However, the following 401 error is visible in the paif-ingress pod logs:
 
"GET /api/v1/control/data-sources HTTP/1.1" 401

Environment

VMware Private AI Foundation

Resolution

  1. Authenticate to the VCF Automation UI and select the target Organization.
  2. Navigate to **Build & Deploy** > [Namespace] > **Services** > **Private AI**.
  3. Go to the **Service Configuration** tab.
  4. In the **CA Trust Bundles** pane, click **Add CA trust bundle**.
  5. Select **Upload CA Trust Bundle** and input a name (e.g., authentik-oidc-ca).
  6. Upload the Authentik OIDC certificate file and click **Add**.(Regenerate new CA signed cert if default self-signed cert not work)