Skip to content

Commit 1cdd630

Browse files
author
Your Name
committed
Merge branch 'full-chart'
2 parents 20fa394 + 509764c commit 1cdd630

File tree

5 files changed

+12
-6
lines changed

5 files changed

+12
-6
lines changed

charts/opencloud-full/Chart.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ maintainers:
99
1010
url: https://opencloud.eu
1111
type: application
12-
version: 2.0.9
12+
version: 2.0.10
1313
# renovate: datasource=docker depName=opencloudeu/opencloud-rolling
1414
appVersion: 2.3.0
1515
kubeVersion: ""

charts/opencloud-full/deployments/helm/helmfile.yaml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -65,6 +65,8 @@ releases:
6565
issuerURI: https://keycloak.opencloud.test/realms/openCloud
6666
userIDClaim: sub
6767
userIDClaimAttributeMapping: username
68+
roleAssignment:
69+
claim: roles
6870
ldap:
6971
writeable: true
7072
uri: ldaps://openldap.openldap.svc.cluster.local:636

charts/opencloud-full/deployments/timoni/configmap.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -40,14 +40,12 @@ data:
4040
OC_HTTP_API_INSECURE: "true"
4141

4242
###############################################################################
43-
# Keycloak Configuration
43+
# Internal Keycloak (for testing only)
4444
###############################################################################
45-
KEYCLOAK_DOMAIN: "keycloak.opencloud.test"
4645
KEYCLOAK_ENABLED: "true"
4746

48-
4947
###############################################################################
50-
# Minio Configuration
48+
# Internal Minio (for testing only)
5149
###############################################################################
5250
MINIO_DOMAIN: "minio.opencloud.test"
5351
MINIO_ENABLED: "true"
@@ -71,13 +69,15 @@ data:
7169
###############################################################################
7270
# OIDC Configuration
7371
###############################################################################
72+
KEYCLOAK_DOMAIN: "keycloak.opencloud.test"
7473
OIDC_ISSUER_URI: "https://keycloak.opencloud.test/realms/openCloud"
7574
EXTERNAL_USER_MANAGEMENT_ENABLED: "true"
7675
EXTERNAL_USER_MANAGEMENT_ADMIN_UUID: "0ab77e6d-23b4-4ba3-9843-a3b3efdcfc53"
7776
AUTOPROVISION_ACCOUNTS_ENABLED: "true"
7877
AUTOPROVISION_ACCOUNTS_CLAIM_USER_NAME: "sub"
7978
OIDC_USER_ID_CLAIM: "sub"
8079
OIDC_USER_ID_CLAIM_ATTRIBUTE_MAPPING: "username"
80+
OIDC_ROLE_ASSIGNMENT_CLAIM: "roles"
8181

8282
###############################################################################
8383
# Collabora Configuration

charts/opencloud-full/deployments/timoni/opencloud.cue

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,6 @@ bundle: {
1919
sync: {
2020
timeout: 10
2121
createNamespace: true
22-
interval: 1
2322
}
2423
helmValues: {
2524
logging: {
@@ -97,6 +96,9 @@ bundle: {
9796
issuerURI: string @timoni(runtime:string:OIDC_ISSUER_URI)
9897
userIDClaim: string @timoni(runtime:string:OIDC_USER_ID_CLAIM)
9998
userIDClaimAttributeMapping: string @timoni(runtime:string:OIDC_USER_ID_CLAIM_ATTRIBUTE_MAPPING)
99+
roleAssignment: {
100+
claim: string @timoni(runtime:string:OIDC_ROLE_ASSIGNMENT_CLAIM)
101+
}
100102
}
101103
ldap: {
102104
writeable: bool @timoni(runtime:bool:LDAP_WRITEABLE)

charts/opencloud-full/deployments/timoni/runtime.cue

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -71,6 +71,7 @@ runtime: {
7171
"AUTOPROVISION_ACCOUNTS_CLAIM_USER_NAME": "obj.data.AUTOPROVISION_ACCOUNTS_CLAIM_USER_NAME"
7272
"OIDC_USER_ID_CLAIM": "obj.data.OIDC_USER_ID_CLAIM"
7373
"OIDC_USER_ID_CLAIM_ATTRIBUTE_MAPPING": "obj.data.OIDC_USER_ID_CLAIM_ATTRIBUTE_MAPPING"
74+
"OIDC_ROLE_ASSIGNMENT_CLAIM": "obj.data.OIDC_ROLE_ASSIGNMENT_CLAIM"
7475
"LDAP_WRITEABLE": "obj.data.LDAP_WRITEABLE"
7576
"LDAP_INSECURE": "obj.data.LDAP_INSECURE"
7677
"LDAP_BIND_DN": "obj.data.LDAP_BIND_DN"
@@ -157,6 +158,7 @@ runtime: {
157158
AUTOPROVISION_ACCOUNTS_CLAIM_USER_NAME: "sub"
158159
OIDC_USER_ID_CLAIM: "sub"
159160
OIDC_USER_ID_CLAIM_ATTRIBUTE_MAPPING: "username"
161+
OIDC_ROLE_ASSIGNMENT_CLAIM: "roles"
160162
LDAP_WRITEABLE: true
161163
LDAP_INSECURE: true
162164
LDAP_BIND_DN: "cn=admin,dc=opencloud,dc=eu"

0 commit comments

Comments
 (0)