feat: add Google broker configuration profiles
This commit is contained in:
@@ -124,6 +124,36 @@
|
||||
}
|
||||
}
|
||||
],
|
||||
"identityProviders": [
|
||||
{
|
||||
"alias": "mock-google",
|
||||
"displayName": "Mock Google (local verification)",
|
||||
"providerId": "oidc",
|
||||
"enabled": true,
|
||||
"updateProfileFirstLoginMode": "off",
|
||||
"trustEmail": false,
|
||||
"storeToken": false,
|
||||
"addReadTokenRoleOnCreate": false,
|
||||
"authenticateByDefault": false,
|
||||
"linkOnly": false,
|
||||
"firstBrokerLoginFlowAlias": "first broker login",
|
||||
"config": {
|
||||
"clientId": "mock-google-broker",
|
||||
"clientSecret": "${MOCK_GOOGLE_BROKER_CLIENT_SECRET}",
|
||||
"authorizationUrl": "http://localhost:8080/realms/mock-google/protocol/openid-connect/auth",
|
||||
"tokenUrl": "http://keycloak:8080/realms/mock-google/protocol/openid-connect/token",
|
||||
"userInfoUrl": "http://keycloak:8080/realms/mock-google/protocol/openid-connect/userinfo",
|
||||
"issuer": "http://localhost:8080/realms/mock-google",
|
||||
"jwksUrl": "http://keycloak:8080/realms/mock-google/protocol/openid-connect/certs",
|
||||
"useJwksUrl": "true",
|
||||
"validateSignature": "true",
|
||||
"defaultScope": "openid profile email",
|
||||
"syncMode": "IMPORT",
|
||||
"pkceEnabled": "true",
|
||||
"pkceMethod": "S256"
|
||||
}
|
||||
}
|
||||
],
|
||||
"users": [
|
||||
{
|
||||
"username": "admin-user",
|
||||
|
||||
@@ -0,0 +1,71 @@
|
||||
{
|
||||
"realm": "mock-google",
|
||||
"displayName": "Controllable Google OIDC Test Provider",
|
||||
"enabled": true,
|
||||
"sslRequired": "external",
|
||||
"registrationAllowed": false,
|
||||
"resetPasswordAllowed": false,
|
||||
"editUsernameAllowed": false,
|
||||
"loginWithEmailAllowed": true,
|
||||
"duplicateEmailsAllowed": false,
|
||||
"bruteForceProtected": true,
|
||||
"clients": [
|
||||
{
|
||||
"clientId": "mock-google-broker",
|
||||
"name": "Main Realm Identity Broker",
|
||||
"enabled": true,
|
||||
"protocol": "openid-connect",
|
||||
"publicClient": false,
|
||||
"clientAuthenticatorType": "client-secret",
|
||||
"secret": "${MOCK_GOOGLE_BROKER_CLIENT_SECRET}",
|
||||
"standardFlowEnabled": true,
|
||||
"implicitFlowEnabled": false,
|
||||
"directAccessGrantsEnabled": false,
|
||||
"serviceAccountsEnabled": false,
|
||||
"redirectUris": [
|
||||
"http://localhost:8080/realms/keycloak-patterns/broker/mock-google/endpoint"
|
||||
],
|
||||
"webOrigins": []
|
||||
}
|
||||
],
|
||||
"users": [
|
||||
{
|
||||
"username": "mock-new-user",
|
||||
"enabled": true,
|
||||
"email": "broker-new-user@example.test",
|
||||
"emailVerified": true,
|
||||
"firstName": "Broker",
|
||||
"lastName": "New",
|
||||
"credentials": [
|
||||
{
|
||||
"type": "password",
|
||||
"value": "${MOCK_GOOGLE_USER_PASSWORD}",
|
||||
"temporary": false
|
||||
}
|
||||
]
|
||||
},
|
||||
{
|
||||
"username": "mock-collision-user",
|
||||
"enabled": true,
|
||||
"email": "regular-user@example.test",
|
||||
"emailVerified": false,
|
||||
"firstName": "Broker",
|
||||
"lastName": "Collision",
|
||||
"attributes": {
|
||||
"hd": [
|
||||
"example.test"
|
||||
],
|
||||
"picture": [
|
||||
"https://images.example.test/mock-collision-user.png"
|
||||
]
|
||||
},
|
||||
"credentials": [
|
||||
{
|
||||
"type": "password",
|
||||
"value": "${MOCK_GOOGLE_USER_PASSWORD}",
|
||||
"temporary": false
|
||||
}
|
||||
]
|
||||
}
|
||||
]
|
||||
}
|
||||
Reference in New Issue
Block a user