Page MenuHomeSoftware Heritage

keycloak: Add swh-deposit client in production realm
ClosedPublic

Authored by ardumont on Mon, Mar 29, 2:12 PM.

Details

Summary

Related to T3184

Test Plan

octocatalog:

$ bin/octocatalog-diff --octocatalog-diff-args --no-truncate-details --to staging kelvingrove
*** Running octocatalog-diff on host kelvingrove.internal.softwareheritage.org
I, [2021-03-29T14:11:12.265789 #17923]  INFO -- : Catalogs compiled for kelvingrove.internal.softwareheritage.org
I, [2021-03-29T14:11:13.173892 #17923]  INFO -- : Diffs computed for kelvingrove.internal.softwareheritage.org
diff origin/production/kelvingrove.internal.softwareheritage.org current/kelvingrove.internal.softwareheritage.org
*******************************************
+ Keycloak_client[swh-deposit on SoftwareHeritage] =>
   parameters =>
      "client_id": "swh-deposit"
      "default_client_scopes": ["profile", "email", "roles", "web-origins"]
      "ensure": "present"
      "id": "62dddb93-4e95-53bc-ac45-549c3a6d6e1c"
      "login_theme": "swh"
      "optional_client_scopes": ["microprofile-jwt", "offline_access"]
      "public_client": true
      "realm": "SoftwareHeritage"
      "redirect_uris": ["https://deposit.softwareheritage.org/*", "https://deposit.internal.softwareheritage.org/*"]
      "roles": ["swh.deposit.api"]
*******************************************
+ Keycloak_client_protocol_mapper[audience for 62dddb93-4e95-53bc-ac45-549c3a6d6e1c on SoftwareHeritage] =>
   parameters =>
      "client": "62dddb93-4e95-53bc-ac45-549c3a6d6e1c"
      "ensure": "present"
      "id": "24eb0773-22d3-5ec6-8985-251e323ae1ab"
      "included_client_audience": "swh-deposit"
      "realm": "SoftwareHeritage"
      "resource_name": "audience"
      "type": "oidc-audience-mapper"
*******************************************
+ Keycloak_client_protocol_mapper[groups for 62dddb93-4e95-53bc-ac45-549c3a6d6e1c on SoftwareHeritage] =>
   parameters =>
      "claim_name": "groups"
      "client": "62dddb93-4e95-53bc-ac45-549c3a6d6e1c"
      "ensure": "present"
      "full_path": true
      "id": "e78dfa3c-50e8-5ad5-8de0-9e9b7ea9c85d"
      "realm": "SoftwareHeritage"
      "resource_name": "groups"
      "type": "oidc-group-membership-mapper"
*******************************************
*** End octocatalog-diff on kelvingrove.internal.softwareheritage.org

Diff Detail

Repository
rSPSITE puppet-swh-site
Lint
Automatic diff as part of commit; lint not applicable.
Unit
Automatic diff as part of commit; unit tests not applicable.