• Joined on 2025-03-24
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 22:01:00 +00:00
fdd275c446 keycloak: fix oauth2-proxy redirect bootstrap job
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 21:53:31 +00:00
59ee37a3b5 keycloak: bootstrap oauth2-proxy redirect URIs
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 21:45:42 +00:00
ecf21d95b2 vault: rerun oidc bootstrap job
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 21:38:40 +00:00
9dfe1acfa0 keycloak: ensure zot oauth2 client redirect
046c9dc17a vault: default oidc login and middleware fix
Compare 2 commits »
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 20:42:28 +00:00
93d2354e72 vault: redirect / and /ui to oidc login
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 20:38:29 +00:00
7431cab073 vault: fix middleware naming
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 20:16:23 +00:00
373254c97d zot,vault: fix oidc ingress
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 06:25:47 +00:00
4a6aa907f6 vault: fix ingress tls annotation
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 05:34:37 +00:00
1f5ae50989 zot: restore oauth2-proxy front; vault: point ingress to vault-ui
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 05:26:24 +00:00
27214e7294 zot/vault: simplify to native OIDC and redirect to login
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 05:08:42 +00:00
7c9fc9008a zot: route ingress directly to zot (native OIDC)
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 04:29:24 +00:00
0a76fc3612 zot: use generic oidc provider key
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 04:16:13 +00:00
cdbad50c02 zot: fix oidc config keys
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 02:37:05 +00:00
ea4c04ba04 zot: fix oidc provider map shape
bstein pushed to feature/sso at bstein/titan-iac 2025-12-09 02:25:10 +00:00
dba4d270ff sso: fix vault OIDC bootstrap and render zot oidc config
bstein pushed to feature/sso at bstein/titan-iac 2025-12-07 23:28:57 +00:00
c8254d6eec longhorn/vault: zot oauth2-proxy integration
bstein pushed to feature/sso at bstein/titan-iac 2025-12-07 22:44:27 +00:00
6c62d42f7a longhorn/vault: gate via oauth2-proxy
bstein pushed to feature/sso at bstein/titan-iac 2025-12-07 16:20:06 +00:00
a7e9f1f7d8 auth: remove error middleware to allow redirect
bstein pushed to feature/sso at bstein/titan-iac 2025-12-07 16:09:52 +00:00
ceb692f7ee oauth2-proxy: drop groups scope to avoid invalid_scope
bstein pushed to feature/sso at bstein/titan-iac 2025-12-07 16:03:47 +00:00
24fbaad040 auth: forward-auth via external auth host (svc traffic flaky)