Discourse is a really great opensource forum, written in Ruby on Rails and Ember.js.

We should try to use it to complement mailing lists and IRC in internal communication, when we need persistent, searchable discussions (with helpful links to the outside world) for a broad and offtopicky subjects.

My aim is to set up an instance (probably in Cloud, but Discourse natural deployment strategy is docker), bind it to our internal SAML for authentication, and call that https://discourse.suse.de

SAML authorization proxy


Deployment scripts (for SLE12)


Setup for demo:

In the /etc/hosts file:   discourse.suse.de   discourse-auth-proxy.suse.de

Looking for hackers with the skills:

rails docker forum internal communication saml

This project is part of:

Hack Week 12


  • over 9 years ago: vmoravec liked this project.
  • over 9 years ago: digitaltomm liked this project.
  • over 9 years ago: kpimenov started this project.
  • over 9 years ago: kpimenov added keyword "rails" to this project.
  • over 9 years ago: kpimenov added keyword "docker" to this project.
  • over 9 years ago: kpimenov added keyword "forum" to this project.
  • over 9 years ago: kpimenov added keyword "internal" to this project.
  • over 9 years ago: kpimenov added keyword "communication" to this project.
  • over 9 years ago: kpimenov added keyword "saml" to this project.
  • over 9 years ago: kpimenov originated this project.

  • Comments

    • kpimenov
      over 9 years ago by kpimenov | Reply

      There is a repo for SAML auth Discourse plugin: https://gitlab.suse.de/kpimenov/discoursesamlauth

      Discourse plugin development is not documented anyhow at the moment, but I hope I will figure out all the details from the existing examples.

      • kpimenov
        over 9 years ago by kpimenov | Reply

        Correct link

    • kpimenov
      over 9 years ago by kpimenov | Reply

      Status update

      It turns out, auth plugin is not the right path for us to follow, as it can only complement classical login-and-password auth in Discourse.

      The correct way to implement only the SAML SSO is to build a proxy, which will respond to Discourse SSO spec and forward requests to the selected SAML endpoint.

      That's my plan for today.

      • kpimenov
        over 9 years ago by kpimenov | Reply

        SAML proxy repo

    • lnussel
      over 9 years ago by lnussel | Reply

      is it actually possible to reply to discourse mails? The one discourse list I'm subscribed to doesn't allow that at least.

    • darix
      over 9 years ago by darix | Reply

      1. you can have emails. even opening new threads via email should be possible.
      2. you don't need saml. ancor already has an omniauth plugin for ichain style auth.
      3. we already have discourse packages and I actually have it running on my private machine.

    Similar Projects

    This project is one of its kind!