-
Notifications
You must be signed in to change notification settings - Fork 6
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Openshift Console #136
Comments
Yes. It's been a while but OpenUnison works well as an OIDC provider for OpenShift. For SSO, you can combine the instructions from OpenUnison (https://openunison.github.io/documentation/custom-sso/#extending-the-kubernetes-trust) and https://docs.openshift.com/container-platform/4.17/authentication/identity_providers/configuring-oidc-identity-provider.html. Based on the docs OpenShift will just-in-time provision your oidc claims into their custom object, so i don't think you need to worry about OpenUnison just-in-time provisioning that anymore. |
That's good to know, thanks.
…On Tue, Dec 17, 2024 at 8:39 AM Marc Boorshtein ***@***.***> wrote:
Yes. It's been a while but OpenUnison works well as an OIDC provider for
OpenShift. For SSO, you can combine the instructions from OpenUnison (
https://openunison.github.io/documentation/custom-sso/#extending-the-kubernetes-trust)
and
https://docs.openshift.com/container-platform/4.17/authentication/identity_providers/configuring-oidc-identity-provider.html.
Based on the docs OpenShift will just-in-time provision your oidc claims
into their custom object, so i don't think you need to worry about
OpenUnison just-in-time provisioning that anymore.
—
Reply to this email directly, view it on GitHub
<#136 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/BBTWBDF7XQDPL6KH2IUONIT2GASP7AVCNFSM6AAAAABTXAIZOSVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDKNBYGQ4DONRXGA>
.
You are receiving this because you authored the thread.Message ID:
***@***.***>
|
Hi Marc:
Has anyone tried to put the Openshift Console on Openunison?
Cheers,
Dave
The text was updated successfully, but these errors were encountered: