Skip to Content
Odoo Menu
  • Log ind
  • Prøv gratis
  • Apps
    Økonomi
    • Bogføring
    • Fakturering
    • Udgifter
    • Regneark (BI)
    • Dokumenter
    • e-Signatur
    Salg
    • CRM
    • Salg
    • POS Butik
    • POS Restaurant
    • Abonnementer
    • Udlejning
    Hjemmeside
    • Hjemmesidebygger
    • e-Handel
    • Blog
    • Forum
    • LiveChat
    • e-Læring
    Forsyningskæde
    • Lagerbeholdning
    • Produktion
    • PLM
    • Indkøb
    • Vedligeholdelse
    • Kvalitet
    HR
    • Medarbejdere
    • Rekruttering
    • Fravær
    • Medarbejdersamtaler
    • Anbefalinger
    • Flåde
    Marketing
    • Markedsføring på sociale medier
    • E-mailmarketing
    • SMS-marketing
    • Arrangementer
    • Automatiseret marketing
    • Spørgeundersøgelser
    Tjenester
    • Projekt
    • Timesedler
    • Udkørende Service
    • Kundeservice
    • Planlægning
    • Aftaler
    Produktivitet
    • Dialog
    • Godkendelser
    • IoT
    • VoIP
    • Vidensdeling
    • WhatsApp
    Tredjepartsapps Odoo Studio Odoo Cloud-platform
  • Brancher
    Detailhandel
    • Boghandel
    • Tøjforretning
    • Møbelforretning
    • Dagligvarebutik
    • Byggemarked
    • Legetøjsforretning
    Mad og værtsskab
    • Bar og pub
    • Restaurant
    • Fastfood
    • Gæstehus
    • Drikkevareforhandler
    • Hotel
    Ejendom
    • Ejendomsmægler
    • Arkitektfirma
    • Byggeri
    • Ejendomsadministration
    • Havearbejde
    • Boligejerforening
    Rådgivning
    • Regnskabsfirma
    • Odoo-partner
    • Marketingbureau
    • Advokatfirma
    • Rekruttering
    • Audit & certificering
    Produktion
    • Tekstil
    • Metal
    • Møbler
    • Fødevareproduktion
    • Bryggeri
    • Firmagave
    Heldbred & Fitness
    • Sportsklub
    • Optiker
    • Fitnesscenter
    • Kosmetolog
    • Apotek
    • Frisør
    Håndværk
    • Handyman
    • IT-hardware og support
    • Solenergisystemer
    • Skomager
    • Rengøringsservicer
    • VVS- og ventilationsservice
    Andet
    • Nonprofitorganisation
    • Miljøagentur
    • Udlejning af billboards
    • Fotografi
    • Cykeludlejning
    • Softwareforhandler
    Gennemse alle brancher
  • Community
    Få mere at vide
    • Tutorials
    • Dokumentation
    • Certificeringer
    • Oplæring
    • Blog
    • Podcast
    Bliv klogere
    • Udannelselsesprogram
    • Scale Up!-virksomhedsspillet
    • Besøg Odoo
    Få softwaren
    • Download
    • Sammenlign versioner
    • Udgaver
    Samarbejde
    • Github
    • Forum
    • Arrangementer
    • Oversættelser
    • Bliv partner
    • Tjenester til partnere
    • Registrér dit regnskabsfirma
    Modtag tjenester
    • Find en partner
    • Find en bogholder
    • Kontakt en rådgiver
    • Implementeringstjenester
    • Kundereferencer
    • Support
    • Opgraderinger
    Github Youtube Twitter LinkedIn Instagram Facebook Spotify
    +1 (650) 691-3277
    Få en demo
  • Prissætning
  • Hjælp

Odoo is the world's easiest all-in-one management software.
It includes hundreds of business apps:

  • CRM
  • e-Commerce
  • Bogføring
  • Lager
  • PoS
  • Projekt
  • MRP
All apps
Du skal være registreret for at interagere med fællesskabet.
All Posts People Emblemer
Tags (View all)
odoo accounting v14 pos v15
Om dette forum
Du skal være registreret for at interagere med fællesskabet.
All Posts People Emblemer
Tags (View all)
odoo accounting v14 pos v15
Om dette forum
Hjælp

[Odoo 19] Google OAuth — Fresh Install Still Stuck in Redirect Loop (/web/login ↔ /auth_oauth/signin)

Tilmeld

Få besked, når der er aktivitet på dette indlæg

Dette spørgsmål er blevet anmeldt
1 Svar
806 Visninger
Avatar
Roger

✅ Environment

  • Odoo version: 19 (Enterprise / Community, same behavior)
  • Deployment: Self-hosted via Docker
  • Database: PostgreSQL 15 / 16
  • OS: Ubuntu 24.04 LTS
  • Python: 3.11
  • Reverse proxy: Nginx

location / { proxy_pass http://127.0.0.1:8069; proxy_set_header Host $host; proxy_set_header X-Real-IP $remote_addr; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header X-Forwarded-Proto $scheme; }

🧪 Reproducible on a Brand-New Server (No Legacy Data)

  • Fresh Ubuntu 24.04 VPS
  • Installed using the official script:
    wget -O - https://nightly.odoo.com/odoo.sh | bash
  • Only module enabled: auth_oauth
  • Google OAuth configured from scratch with valid credentials

Results:

  • http://localhost:8069 → ✅ Works perfectly
  • https://mydomain.com (with Let's Encrypt & proxy) → 🔁 Infinite redirect loop

🧩 Symptoms

  1. Click “Login with Google”
  2. Google consent → success
  3. Redirects back to Odoo → infinite loop:

    /web/login → /auth_oauth/signin → /web/login?redirect=/web → ...

  4. Browser DevTools shows multiple 302 redirects
  5. Sometimes appears as:
    • “Invalid Credentials”
    • “CSRF cookie not set”

🔍 Odoo Log Extracts

2025-10-28 14:xx:xx,xxx WARNING ? werkzeug: Invalid OAuth2 token 2025-10-28 14:xx:xx,xxx INFO ? odoo.addons.auth_oauth.controllers.main: OAuth2 callback: code received 2025-10-28 14:xx:xx,xxx ERROR ? odoo.addons.auth_oauth.controllers.main: Failed to fetch user info: 401 Unauthorized

⚙️ Google Cloud OAuth Config

  • Authorized redirect URIs:

    https://mydomain.com/auth_oauth/signin http://localhost:8069/auth_oauth/signin

  • APIs enabled: People API, OAuth consent screen: External (Published)

⚙️ Odoo Provider Settings

FieldValue
NameGoogle
FlowOAuth 2.0
Client IDxxxxxxx.apps.googleusercontent.com
Scopeopenid email profile
Authorization URLhttps://accounts.google.com/o/oauth2/auth
Token URLhttps://oauth2.googleapis.com/token
User Info URLhttps://www.googleapis.com/oauth2/v3/userinfo

🧪 Things Already Tried (All Failed)

  • ✅ web.base.url = https://mydomain.com + web.base.url.freeze = True
  • ✅ proxy_mode = True
  • ✅ Cleared all auth_oauth.google* from ir.config_parameter
  • ✅ Reinstalled auth_oauth
  • ✅ Disabled Cloudflare proxy
  • ✅ Created new domain + new Google project + new credentials
  • ✅ Works perfectly on localhost (HTTP)
  • ❌ Fails on HTTPS (any domain or Odoo.sh)

🧭 Key Findings

  • http://localhost:8069 → 100% success
  • https://... → 100% loop
  • Postman manual flow can successfully exchange code → id_token + access_token
  • _auth_oauth_signin() in auth_oauth/controllers/main.py line ~98 returns False
  • Log shows 401 Unauthorized from userinfo endpoint

❓ Questions for the Community

  1. Did something change in Odoo 18+ regarding Google id_token validation? (sub vs user_id?)
  2. Is web.base.url still being overridden even when frozen?
  3. Are extra “Allowed Domains” or CORS settings now required for OAuth?
  4. Does anyone have a working Google OAuth config (2025-tested) for Odoo 19 under HTTPS?

💡 Additional Clues

  • When enabling debug logging in auth_oauth, the callback works up to token exchange but fails when Odoo tries to fetch user info.
  • Same issue occurs even on a minimal installation with only auth_oauth, no custom modules, no cache, no proxy cache.
  • Appears identical across Odoo 18 nightly and 19 stable builds.

🧩 Hypothesis

It seems HTTPS reverse proxy environments fail to preserve proper protocol/host headers for Odoo’s OAuth state verification or Secure cookies, causing session mismatch → redirect loop.

But I’ve also seen 401 from userinfo endpoint even with valid access token — possibly due to missing Authorization: Bearer header.

🙏 Looking for

  • Any confirmed working Odoo 19 Google OAuth setup under HTTPS
  • Or a patch / commit referencing this regression in recent versions

Would appreciate if Odoo team or community could reproduce this cleanly on a fresh Docker setup — it’s 100% reproducible here.

0
Avatar
Kassér
Avatar
Phillipp Hughes
Bedste svar

Just an idea / hint.
I had similar behavior when enabling OAuth for Azure SSO.
Fixed it by

a) enabling some headers on my nginx, mentioned in https://www.odoo.com/documentation/18.0/administration/on_premise/deploy.html?highlight=nginx#id8 and

b) setting the not-self-explaining systemparameter auth_oauth.authorization_header as mentioned in the docs: https://www.odoo.com/documentation/18.0/applications/general/users/azure.html


but itsounds more likely, that you messed up with your nginx.conf

0
Avatar
Kassér
Enjoying the discussion? Don't just read, join in!

Create an account today to enjoy exclusive features and engage with our awesome community!

Tilmeld dig
Community
  • Tutorials
  • Dokumentation
  • Forum
Open Source
  • Download
  • Github
  • Runbot
  • Oversættelser
Tjenester
  • Odoo.sh-hosting
  • Support
  • Opgradere
  • Individuelt tilpasset udvikling
  • Uddannelse
  • Find en bogholder
  • Find en partner
  • Bliv partner
Om os
  • Vores virksomhed
  • Brandaktiver
  • Kontakt os
  • Stillinger
  • Arrangementer
  • Podcast
  • Blog
  • Kunder
  • Juridiske dokumenter • Privatlivspolitik
  • Sikkerhedspolitik
الْعَرَبيّة Català 简体中文 繁體中文 (台灣) Čeština Dansk Nederlands English Suomi Français Deutsch हिंदी Bahasa Indonesia Italiano 日本語 한국어 (KR) Lietuvių kalba Język polski Português (BR) română русский язык Slovenský jazyk slovenščina Español (América Latina) Español ภาษาไทย Türkçe українська Tiếng Việt

Odoo er en samling open source-forretningsapps, der dækker alle dine virksomhedsbehov – lige fra CRM, e-handel og bogføring til lagerstyring, POS, projektledelse og meget mere.

Det unikke ved Odoo er, at systemet både er brugervenligt og fuldt integreret.

Website made with

Odoo Experience on YouTube

1. Use the live chat to ask your questions.
2. The operator answers within a few minutes.

Live support on Youtube
Watch now