mirror of https://github.com/samply/bridgehead.git
Add keycloak configuration
This commit is contained in:
parent
0ab898a9e7
commit
ebafcf06b6
|
@ -41,9 +41,9 @@ services:
|
||||||
APP_CONTEXT_PATH: "/opal"
|
APP_CONTEXT_PATH: "/opal"
|
||||||
OPAL_PRIVATE_KEY: "/run/secrets/opal-key.pem"
|
OPAL_PRIVATE_KEY: "/run/secrets/opal-key.pem"
|
||||||
OPAL_CERTIFICATE: "/run/secrets/opal-cert.pem"
|
OPAL_CERTIFICATE: "/run/secrets/opal-cert.pem"
|
||||||
KEYCLOAK_URL: "https://login.verbis.dkfz.de"
|
KEYCLOAK_URL: "${KEYCLOAK_URL}"
|
||||||
KEYCLOAK_REALM: "test-realm-01"
|
KEYCLOAK_REALM: "${KEYCLOAK_REALM}"
|
||||||
KEYCLOAK_CLIENT_ID: "${SITE_ID}-private"
|
KEYCLOAK_CLIENT_ID: "${KEYCLOAK_PRIVATE_CLIENT_ID}"
|
||||||
KEYCLOAK_CLIENT_SECRET: "${OIDC_CLIENT_SECRET}"
|
KEYCLOAK_CLIENT_SECRET: "${OIDC_CLIENT_SECRET}"
|
||||||
KEYCLOAK_ADMIN_GROUP: "${KEYCLOAK_ADMIN_GROUP}"
|
KEYCLOAK_ADMIN_GROUP: "${KEYCLOAK_ADMIN_GROUP}"
|
||||||
TOKEN_MANAGER_PASSWORD: "${TOKEN_MANAGER_OPAL_PASSWORD}"
|
TOKEN_MANAGER_PASSWORD: "${TOKEN_MANAGER_OPAL_PASSWORD}"
|
||||||
|
|
|
@ -19,6 +19,7 @@ services:
|
||||||
FILE_CHARSET: ${MTBA_FILE_CHARSET}
|
FILE_CHARSET: ${MTBA_FILE_CHARSET}
|
||||||
FILE_END_OF_LINE: ${MTBA_FILE_END_OF_LINE}
|
FILE_END_OF_LINE: ${MTBA_FILE_END_OF_LINE}
|
||||||
CSV_DELIMITER: ${MTBA_CSV_DELIMITER}
|
CSV_DELIMITER: ${MTBA_CSV_DELIMITER}
|
||||||
|
HTTP_RELATIVE_PATH: "/mtba"
|
||||||
labels:
|
labels:
|
||||||
- "traefik.enable=true"
|
- "traefik.enable=true"
|
||||||
- "traefik.http.routers.mtba_ccp.rule=PathPrefix(`/mtba`)"
|
- "traefik.http.routers.mtba_ccp.rule=PathPrefix(`/mtba`)"
|
||||||
|
|
|
@ -31,10 +31,10 @@ services:
|
||||||
environment:
|
environment:
|
||||||
DEFAULT_LANGUAGE: "${DEFAULT_LANGUAGE}"
|
DEFAULT_LANGUAGE: "${DEFAULT_LANGUAGE}"
|
||||||
TEILER_BACKEND_URL: "https://${HOST}/ccp-teiler-backend"
|
TEILER_BACKEND_URL: "https://${HOST}/ccp-teiler-backend"
|
||||||
KEYCLOAK_URL: "https://login.verbis.dkfz.de"
|
KEYCLOAK_URL: "${KEYCLOAK_URL}"
|
||||||
KEYCLOAK_REALM: "test-realm-01"
|
KEYCLOAK_REALM: "${KEYCLOAK_REALM}"
|
||||||
KEYCLOAK_CLIENT_ID: "${SITE_ID}-public"
|
KEYCLOAK_CLIENT_ID: "${KEYCLOAK_PUBLIC_CLIENT_ID}"
|
||||||
KEYCLOAK_TOKEN_GROUP: "groups"
|
KEYCLOAK_TOKEN_GROUP: "${KEYCLOAK_TOKEN_GROUP}"
|
||||||
TEILER_ADMIN_NAME: "${OPERATOR_FIRST_NAME} ${OPERATOR_LAST_NAME}"
|
TEILER_ADMIN_NAME: "${OPERATOR_FIRST_NAME} ${OPERATOR_LAST_NAME}"
|
||||||
TEILER_ADMIN_EMAIL: "${OPERATOR_EMAIL}"
|
TEILER_ADMIN_EMAIL: "${OPERATOR_EMAIL}"
|
||||||
TEILER_ADMIN_PHONE: "${OPERATOR_PHONE}"
|
TEILER_ADMIN_PHONE: "${OPERATOR_PHONE}"
|
||||||
|
|
6
ccp/vars
6
ccp/vars
|
@ -15,6 +15,12 @@ ENABLE_TEILER=true
|
||||||
|
|
||||||
KEYCLOAK_USER_GROUP="DKTK_CCP_$(capitalize_first_letter ${SITE_ID})"
|
KEYCLOAK_USER_GROUP="DKTK_CCP_$(capitalize_first_letter ${SITE_ID})"
|
||||||
KEYCLOAK_ADMIN_GROUP="DKTK_CCP_$(capitalize_first_letter ${SITE_ID})_Verwalter"
|
KEYCLOAK_ADMIN_GROUP="DKTK_CCP_$(capitalize_first_letter ${SITE_ID})_Verwalter"
|
||||||
|
KEYCLOAK_PRIVATE_CLIENT_ID=${SITE_ID}-private
|
||||||
|
KEYCLOAK_PUBLIC_CLIENT_ID=${SITE_ID}-public
|
||||||
|
# TODO: Change Keycloak Realm to productive. "test-realm-01" is only for testing
|
||||||
|
KEYCLOAK_REALM="test-realm-01"
|
||||||
|
KEYCLOAK_URL="https://login.verbis.dkfz.de"
|
||||||
|
KEYCLOAK_TOKEN_GROUP="groups"
|
||||||
POSTGRES_TAG=15.6-alpine
|
POSTGRES_TAG=15.6-alpine
|
||||||
|
|
||||||
for module in $PROJECT/modules/*.sh
|
for module in $PROJECT/modules/*.sh
|
||||||
|
|
Loading…
Reference in New Issue