This commit is contained in:
2022-10-25 07:29:00 -05:00
parent 23bc58a5f0
commit 0907cbc5eb

View File

@@ -3,27 +3,34 @@ oauth2-proxy:
config: config:
existingSecret: oauth-credentials existingSecret: oauth-credentials
configFile: |- configFile: |-
email_domains = [ "*" ] --provider=keycloak-oidc
upstreams = [ "file:///dev/null" ] --redirect-url=https://oauth.durp.info/oauth2/callback
pass_authorization_header = true --oidc-issuer-url=https://keycloak.durp.info/realms/master
pass_access_token = true #--allowed-role=<realm role name> // Optional, required realm role
pass_user_headers = true #--allowed-role=<client id>:<client role name> // Optional, required client role
set_authorization_header = true
set_xauthrequest = true # configFile: |-
request_logging=true # email_domains = [ "*" ]
cookie_secure=true # upstreams = [ "file:///dev/null" ]
scope = "openid profile email" # pass_authorization_header = true
cookie_refresh = "1m" # pass_access_token = true
cookie_expire = "30m" # pass_user_headers = true
# set_authorization_header = true
# set_xauthrequest = true
# request_logging=true
# cookie_secure=true
# scope = "openid profile email"
# cookie_refresh = "1m"
# cookie_expire = "30m"
image: image:
repository: "quay.io/oauth2-proxy/oauth2-proxy" repository: "quay.io/oauth2-proxy/oauth2-proxy"
pullPolicy: "Always" pullPolicy: "Always"
extraArgs: #extraArgs:
provider: keycloak-oidc # provider: keycloak-oidc
redirect-url: https://oauth.durp.info/oauth2/callback/ # redirect-url: https://oauth.durp.info/oauth2/callback/
oidc-issuer-url: https://keycloak.durp.info/realms/master # oidc-issuer-url: https://keycloak.durp.info/realms/master
serviceAccount: serviceAccount:
enabled: true enabled: true