added role retrieving from authentik
This commit is contained in:
@@ -485,7 +485,7 @@ spec:
|
|||||||
name: grafana-oauth
|
name: grafana-oauth
|
||||||
key: client-secret
|
key: client-secret
|
||||||
- name: GF_AUTH_GENERIC_OAUTH_SCOPES
|
- name: GF_AUTH_GENERIC_OAUTH_SCOPES
|
||||||
value: "openid profile email"
|
value: "openid profile email grafana-admin-role"
|
||||||
- name: GF_AUTH_GENERIC_OAUTH_AUTH_URL
|
- name: GF_AUTH_GENERIC_OAUTH_AUTH_URL
|
||||||
value: "https://authentik.dooplex.hu/application/o/authorize/"
|
value: "https://authentik.dooplex.hu/application/o/authorize/"
|
||||||
- name: GF_AUTH_GENERIC_OAUTH_TOKEN_URL
|
- name: GF_AUTH_GENERIC_OAUTH_TOKEN_URL
|
||||||
@@ -497,7 +497,7 @@ spec:
|
|||||||
- name: GF_AUTH_OAUTH_AUTO_LOGIN
|
- name: GF_AUTH_OAUTH_AUTO_LOGIN
|
||||||
value: "true"
|
value: "true"
|
||||||
- name: GF_AUTH_GENERIC_OAUTH_ROLE_ATTRIBUTE_PATH
|
- name: GF_AUTH_GENERIC_OAUTH_ROLE_ATTRIBUTE_PATH
|
||||||
value: "contains(groups[*], 'Grafana Admins') && 'Admin' || 'Viewer'"
|
value: "role"
|
||||||
livenessProbe:
|
livenessProbe:
|
||||||
httpGet:
|
httpGet:
|
||||||
path: /api/health
|
path: /api/health
|
||||||
|
|||||||
Reference in New Issue
Block a user