donghyeon-ka
|
76c852e947
|
merge: shared broker and deployment contracts
|
2026-07-25 16:31:53 +09:00 |
|
donghyeon-ka
|
d01a60964a
|
docs: compare four authentication patterns
|
2026-07-25 16:31:44 +09:00 |
|
donghyeon-ka
|
eacc0e86c9
|
feat: add validated named tunnel profile
|
2026-07-25 16:31:13 +09:00 |
|
donghyeon-ka
|
e4cee2a06d
|
feat: add validated HTTPS termination profiles
|
2026-07-25 16:30:25 +09:00 |
|
donghyeon-ka
|
8539d1bf5b
|
feat: define trusted reverse proxy header contract
|
2026-07-25 16:29:32 +09:00 |
|
donghyeon-ka
|
f077e5038e
|
docs: define exact Google redirect URI policy
|
2026-07-25 16:28:53 +09:00 |
|
donghyeon-ka
|
bdde0feb86
|
test: verify broker identity uses subject not email
|
2026-07-25 16:28:00 +09:00 |
|
donghyeon-ka
|
ed064473dc
|
feat: map broker claims to realm roles
|
2026-07-25 16:26:59 +09:00 |
|
donghyeon-ka
|
84966750f6
|
merge: shared Google claim mapping
|
2026-07-25 16:24:30 +09:00 |
|
donghyeon-ka
|
98b07b4fdf
|
feat: map upstream Google identity claims
|
2026-07-25 16:24:24 +09:00 |
|
donghyeon-ka
|
e682777fc5
|
merge: shared Google brokering baseline
# Conflicts:
# .env.example
|
2026-07-25 16:18:16 +09:00 |
|
donghyeon-ka
|
aeb783e592
|
test: reproduce and block unsafe broker auto-link
|
2026-07-25 16:17:54 +09:00 |
|
donghyeon-ka
|
2ee4b2af1c
|
feat: add Google broker configuration profiles
|
2026-07-25 15:30:47 +09:00 |
|
donghyeon-ka
|
728e737dc8
|
docs: add 39-branch Keycloak governance index
|
2026-07-25 15:26:26 +09:00 |
|
donghyeon-ka
|
2d58dea5e1
|
feat(ap4): defend forwarded identity headers
|
2026-07-25 14:59:47 +09:00 |
|
donghyeon-ka
|
357b7f927b
|
feat(ap4): integrate nginx auth_request
|
2026-07-25 14:55:04 +09:00 |
|
donghyeon-ka
|
4ac0133586
|
feat(ap4): add oauth2-proxy OIDC flow
|
2026-07-25 14:50:00 +09:00 |
|