netbird icon indicating copy to clipboard operation
netbird copied to clipboard

Error connecting Windows users via SSO

Open artkrp31 opened this issue 9 months ago • 3 comments

There is a problem with connecting Windows users. Previously, the user could connect to NetBird, which is hosted on its own infrastructure. A few days later, this user tries to connect again and receives the error rpc error: code = PermissionDenied desc = invalid user

Steps to reproduce the behavior:

  1. Go to NetBird client
  2. Click on connect
  3. See error

Image

Successful connection to NetBird

self-host NetBird's control plane.

0.45.1

Is any other VPN software installed?

No

Debug output

2025-05-23T12:21:22+03:00 ERRO management/client/grpc.go:350: failed to login to Management Service: rpc error: code = PermissionDenied desc = peer login has expired, please log in once more 2025-05-23T12:21:22+03:00 ERRO management/client/grpc.go:350: failed to login to Management Service: rpc error: code = PermissionDenied desc = invalid user 2025-05-23T12:21:22+03:00 ERRO client/internal/login.go:145: failed registering peer rpc error: code = PermissionDenied desc = invalid user,00000000-0000-0000-0000-000000000000 2025-05-23T12:21:22+03:00 WARN client/server/server.go:283: failed login: rpc error: code = PermissionDenied desc = invalid user 2025-05-23T12:41:38+03:00 ERRO management/client/grpc.go:350: failed to login to Management Service: rpc error: code = PermissionDenied desc = peer login has expired, please log in once more 2025-05-23T12:41:38+03:00 WARN client/server/server.go:283: failed login: rpc error: code = InvalidArgument desc = invalid setup-key or no sso information provided, err: invalid UUID length: 0 2025-05-23T12:41:38+03:00 WARN client/server/server.go:469: canceling previous waiting execution 2025-05-23T12:42:08+03:00 ERRO management/client/grpc.go:350: failed to login to Management Service: rpc error: code = PermissionDenied desc = peer login has expired, please log in once more 2025-05-23T12:42:08+03:00 ERRO management/client/grpc.go:350: failed to login to Management Service: rpc error: code = PermissionDenied desc = invalid user 2025-05-23T12:42:08+03:00 ERRO client/internal/login.go:145: failed registering peer rpc error: code = PermissionDenied desc = invalid user,00000000-0000-0000-0000-000000000000 2025-05-23T12:42:08+03:00 WARN client/server/server.go:283: failed login: rpc error: code = PermissionDenied desc = invalid user 2025-05-23T12:44:31+03:00 INFO client/server/server.go:672: service is down 2025-05-23T12:44:31+03:00 INFO client/cmd/root.go:194: shutdown signal received 2025-05-23T12:44:33+03:00 INFO client/cmd/service_controller.go:94: stopped Netbird service

artkrp31 avatar May 23 '25 10:05 artkrp31

Have you taken a look at

This section in particular: https://docs.netbird.io/how-to/troubleshooting-client#client-login-failures

lixmal avatar May 23 '25 11:05 lixmal

@lixmal, Hello. Yes, I've read it. It states that this error occurs if multiple users try to connect to NetBird from the same device, but the problem is that the user is alone. The connection is made via SSO Keycloak. This problem definitely does not arise due to the fact that users are different, there is always 1 user connected behind 1 device. The problem occurs unexpectedly.

artkrp31 avatar May 23 '25 11:05 artkrp31

I encountered a similar issue. Keycloak as SSO, operating system was Fedora 42.

creatorofuniverses avatar May 26 '25 07:05 creatorofuniverses