mirror of
				https://github.com/kevinveenbirkenbach/computer-playbook.git
				synced 2025-10-31 10:19:09 +00:00 
			
		
		
		
	Optimized variables
This commit is contained in:
		| @@ -1295,7 +1295,7 @@ | ||||
|             "user.attribute": "username", | ||||
|             "id.token.claim": "true", | ||||
|             "access.token.claim": "true", | ||||
|             "claim.name": "{{OIDC.ATTRIBUTES.USERNAME}}", | ||||
|             "claim.name": "{{ OIDC.ATTRIBUTES.USERNAME }}", | ||||
|             "jsonType.label": "String" | ||||
|           } | ||||
|         }, | ||||
|   | ||||
| @@ -65,7 +65,7 @@ OIDC_ISSUER={{ OIDC.CLIENT.ISSUER_URL }} | ||||
| OIDC_DISCOVERY=true | ||||
| OIDC_SCOPE="openid,profile,email" | ||||
| # @see https://stackoverflow.com/questions/72108087/how-to-set-the-username-of-mastodon-by-log-in-via-keycloak | ||||
| OIDC_UID_FIELD={{OIDC.ATTRIBUTES.USERNAME}} | ||||
| OIDC_UID_FIELD={{ OIDC.ATTRIBUTES.USERNAME }} | ||||
| OIDC_CLIENT_ID={{ OIDC.CLIENT.ID }} | ||||
| OIDC_REDIRECT_URI=https://{{ domains | get_domain(application_id) }}/auth/auth/openid_connect/callback | ||||
| OIDC_SECURITY_ASSUME_EMAIL_IS_VERIFIED=true | ||||
|   | ||||
| @@ -57,7 +57,7 @@ oidc_providers: | ||||
|     scopes: ["openid", "profile"] | ||||
|     user_mapping_provider: | ||||
|       config: | ||||
|         localpart_template: "{% raw %}{{ user.{% endraw %}{{OIDC.ATTRIBUTES.USERNAME}}{% raw %}}}{% endraw %}" | ||||
|         localpart_template: "{% raw %}{{ user.{% endraw %}{{ OIDC.ATTRIBUTES.USERNAME }}{% raw %}}}{% endraw %}" | ||||
|         display_name_template: "{% raw %}{{ user.name }}{% endraw %}" | ||||
|     backchannel_logout_enabled: true | ||||
| {% endif %} | ||||
|   | ||||
| @@ -102,7 +102,7 @@ return array ( | ||||
|         'mail' => 'email', | ||||
|         'quota' => '{{ ldap.user.attributes.nextcloud_quota }}', | ||||
|         # 'home' => 'homeDirectory',    # Not implemented yet | ||||
|         'ldap_uid' => '{{OIDC.ATTRIBUTES.USERNAME}}', | ||||
|         'ldap_uid' => '{{ OIDC.ATTRIBUTES.USERNAME }}', | ||||
|         # 'groups' => 'ownCloudGroups', # Not implemented yet | ||||
|         # 'login_filter' => 'realm_access_roles', | ||||
|     //    'photoURL' => 'picture', | ||||
|   | ||||
| @@ -145,8 +145,8 @@ PF_OIDC_AUTHORIZE_URL="{{ OIDC.CLIENT.AUTHORIZE_URL }}" | ||||
| PF_OIDC_TOKEN_URL="{{OIDC.CLIENT.TOKEN_URL}}" | ||||
| PF_OIDC_PROFILE_URL="{{ OIDC.CLIENT.USER_INFO_URL }}" | ||||
| PF_OIDC_LOGOUT_URL="{{OIDC.CLIENT.LOGOUT_URL}}" | ||||
| PF_OIDC_USERNAME_FIELD="{{OIDC.ATTRIBUTES.USERNAME}}" | ||||
| PF_OIDC_FIELD_ID="{{OIDC.ATTRIBUTES.USERNAME}}" | ||||
| PF_OIDC_USERNAME_FIELD="{{ OIDC.ATTRIBUTES.USERNAME }}" | ||||
| PF_OIDC_FIELD_ID="{{ OIDC.ATTRIBUTES.USERNAME }}" | ||||
| PF_OIDC_CLIENT_SECRET={{ OIDC.CLIENT.SECRET }} | ||||
| PF_OIDC_CLIENT_ID={{ OIDC.CLIENT.ID }} | ||||
| PF_OIDC_SCOPES="openid profile email" | ||||
|   | ||||
| @@ -76,7 +76,7 @@ OPENID_TOKEN_URL="{{OIDC.CLIENT.TOKEN_URL}}" | ||||
| OPENID_CLIENT_ID="{{ OIDC.CLIENT.ID }}" | ||||
| OPENID_CLIENT_SECRET="{{ OIDC.CLIENT.SECRET }}" | ||||
| OPENID_NAME="{{ OIDC.BUTTON_TEXT }}" | ||||
| OPENID_USERNAME_FIELD="{{OIDC.ATTRIBUTES.USERNAME}}" | ||||
| OPENID_USERNAME_FIELD="{{ OIDC.ATTRIBUTES.USERNAME }}" | ||||
| # Optional: | ||||
| # OPENID_ID_FIELD="sub" | ||||
| # OPENID_FULLNAME_FIELD="name" | ||||
|   | ||||
		Reference in New Issue
	
	Block a user