fix(nubus): multi-group & internal keycloak

This commit is contained in:
Yannik Schmidt
2025-05-29 17:46:46 +02:00
parent 1e1914c045
commit b35977b1fa
2 changed files with 7 additions and 3 deletions

View File

@@ -1518,6 +1518,9 @@ nubusStackDataUms:
oxContextHidden: true oxContextHidden: true
twofaSelfserviceTileCategory: self-service-profile twofaSelfserviceTileCategory: self-service-profile
twofaAdminTileCategory: od.applications twofaAdminTileCategory: od.applications
portalTwoFaAllowedGroups:
- 2fa-admins
- 2fa-admins-opendesk
portalTwoFaLinkBase: {{ printf "https://%s.%s" .Values.global.hosts.nubus .Values.global.domain }} portalTwoFaLinkBase: {{ printf "https://%s.%s" .Values.global.hosts.nubus .Values.global.domain }}
ldapSearchUsers: ldapSearchUsers:
{{- range $username, $password := .Values.secrets.nubus.ldapSearch }} {{- range $username, $password := .Values.secrets.nubus.ldapSearch }}

View File

@@ -13,9 +13,10 @@ twofaHelpdeskBackend:
auth: auth:
username: kcadmin username: kcadmin
config: config:
keycloak_url: {{ printf "https://%s.%s" .Values.global.hosts.keycloak .Values.global.domain }} # keycloak_url: {{ printf "https://%s.%s" .Values.global.hosts.keycloak .Values.global.domain }}
keycloak_url: "http://ums-keycloak.{{ .Release.Namespace }}.svc.{{ .Values.cluster.networking.domain }}:8080"
oidc_host: {{ printf "%s.%s" .Values.global.hosts.keycloak .Values.global.domain }} oidc_host: {{ printf "%s.%s" .Values.global.hosts.keycloak .Values.global.domain }}
oidc_realm: {{ .Values.platform.realm | quote }} oidc_realm: {{ .Values.platform.realm | quote }}
twofa_admin_groups: ["/twofa_admins"] twofa_admin_groups: ["/2fa-admins", "/2fa-admins-opendesk"]
tls: tls:
secretName: {{ .Values.ingress.tls.secretName | quote }} secretName: {{ .Values.ingress.tls.secretName | quote }}