2021-05-09 11:02:59 +02:00
|
|
|
<!--
|
|
|
|
title: Keycloak
|
|
|
|
description: Centralisation de l’authentification
|
|
|
|
published: true
|
2021-05-20 17:12:13 +02:00
|
|
|
date: 2021-05-20T14:35:45.239Z
|
2021-05-09 11:02:59 +02:00
|
|
|
tags:
|
|
|
|
editor: ckeditor
|
|
|
|
dateCreated: 2021-05-09T09:02:57.765Z
|
|
|
|
-->
|
|
|
|
|
2021-05-24 12:04:46 +02:00
|
|
|
<h1>Présentation</h1>
|
|
|
|
<h1>Installation</h1>
|
|
|
|
<h1>Configuration</h1>
|
|
|
|
<h2>Portainer</h2>
|
|
|
|
<figure class="image image_resized" style="width:95.33%;"><img src="https://wiki-tech.io/image_2021-05-03_212514.png"></figure>
|
|
|
|
<h2>Grafana</h2>
|
|
|
|
<pre><code class="language-plaintext"> - GF_AUTH_GENERIC_OAUTH_ENABLED=true
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_SCOPES=email
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_NAME=<NAME>
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_ALLOW_SIGN_UP=true
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_CLIENT_ID=grafana
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_CLIENT_SECRET=<CLIENT_SECRET>
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_AUTH_URL=https://<URL>/auth/realms/<REALMS>/protocol/openid-connect/auth
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_TOKEN_URL=https://<URL>/auth/realms/<REALMS>/protocol/openid-connect/token
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_API_URL=https://<URL>/auth/realms/<REALMS>/protocol/openid-connect/userinfo
|
|
|
|
- GF_AUTH_GENERIC_OAUTH_ROLE_ATTRIBUTE_PATH=contains(roles[*], 'admin') && 'Admin' || contains(roles[*], 'editor') && 'Editor' || 'Viewer'</code></pre>
|
|
|
|
<h2>WikiJS</h2>
|
|
|
|
<p> </p>
|