UNCLASSIFIED - NO CUI

Skip to content
Snippets Groups Projects

SSO Refactor for Global IdP values

Merged Michael McLeroy requested to merge sso_2.0 into master
All threads resolved!
1 file
+ 44
0
Compare changes
  • Side-by-side
  • Inline
+ 44
0
# Migration to Big Bang 2.0
## Values
### General
| Old | New | Notes |
|--|--|--|
| addons.\*.enabled | packages.\*.enabled | |
### SSO Values
| Old | New | Notes |
|--|--|--|
| sso.oidc.host | sso.host | Applies to both oidc and saml |
| sso.oidc.realm | sso.realm | Applies to both oidc and saml |
| sso.jwks | [Deprecated] | Use sso.oidc.jwksUri instead |
| sso.jwks_uri | sso.oidc.jwksUri ||
| sso.client_id | packages.authservice.sso.client_id | Only authservice uses this |
| sso.client_secret | packages.authservice.sso.client_secret | only authservice uses this |
| sso.token_url | sso.url + sso.oidc.token | endpoint is now relative to base url |
| sso.auth_url | sso.url + sso.oidc.authorization | endpoint is now relative to base url |
| sso.certificate_authority | sso.certificateAuthority.cert ||
| sso.secretName | sso.certificateAuthority.secretName ||
| addons.\*.sso.enabled | packages.\*.sso.enabled | |
| addons.\*.sso.client_id | packages.\*.sso.client_id | Only used if defaults places the value in the correct location |
| addons.sonarqube.sso.provider_name | sso.name | IdP values are global |
| addons.sonarqube.sso.certificate | TBD | Jwks certificate from IdP |
| addons.sonarqube.sso.login | sso.claims.user | IdP fields are global |
| addons.sonarqube.sso.name | sso.claims.name | IdP fields are global |
| addons.sonarqube.sso.email | sso.claims.email | IdP fields are global |
| addons.sonarqube.sso.group | TBD ||
### Database Values
| Old | New | Notes |
|--|--|--|
| addons.\*.database.\* | packages.\*.database.\* | |
### Object Values
| Old | New | Notes |
|--|--|--|
Loading