Control panel: bootstrap the bitborg-web Kanidm OAuth2 client + enable (follow-up to #47) #115
Etiketter
Inga etiketter
area/backups
area/ci
area/control-panel
area/identity
area/infra
area/observability
area/payments
area/security
area/storage
area/web
blocked
needs-info
needs-triage
ready-for-implementation
type
bug
type
chore
type
docs
type
epic
type
feature
type
task
wontfix
Ingen milstolpe
Inget projekt
Inga tilldelade
1 deltagare
Notiser
Förfallodatum
Inget förfallodatum satt.
Beroenden
Inga beroenden satta
Referens
bitborg/bitborg-infra#115
Läser in…
Hänvisa till i nytt ärende
Ingen beskrivning angiven.
Ta bort grenen "%!s()"
Borttagning av en gren är permanent. Även om den borttagna grenen kan fortsätta existera en kort tid innan den faktiskt tas bort, kan det INTE ångras i de flesta fall. Vill du fortsätta?
Operational follow-up to #47 — the runbook documented it; this provisions the client/secrets and enables the panel. Web code deployed (bitborg-web #57, JWKS verify + security review). Per runbook § Control-panel OAuth2 client:
bitborg-webKanidm OAuth2 client (redirecthttps://www.gitborg.se/auth/callback, PKCE on, scope-mapforgejo_users openid profile email groups).vault_web_oidc_client_secret+vault_web_session_secret(setsweb_auth_enabled).site.yml --tags web+ verify/accountSSO login.Done (applied by operator 2026-07-18). Verified live:
/auth/login→ 302 toauth.gitborg.se/ui/oauth2?...client_id=bitborg-web&redirect_uri=.../auth/callback&scope=openid+profile+email+groups&code_challenge_method=S256;/account(logged out) → 302/auth/login?return_to=/account(was 404). Epic: gitborg/gitborg-docs#6.supernaut refererade till detta ärende från bitborg/bitborg-docs2026-07-18 20:34:35 +00:00
Control panel: bootstrap the gitborg-web Kanidm OAuth2 client + enable (follow-up to #47)till Control panel: bootstrap the bitborg-web Kanidm OAuth2 client + enable (follow-up to #47)