From a6daf4ece3f05600ad66fea55c5220d07a71cef1 Mon Sep 17 00:00:00 2001 From: Michael Polenchuk Date: Wed, 24 May 2017 12:44:05 +0400 Subject: [mcp] Bring in reclass system salt models Change-Id: I1a865b7524f3a5242544e60e6b36b1092721c58b Signed-off-by: Michael Polenchuk --- mcp/reclass/classes/system/keystone/server/websso.yml | 15 +++++++++++++++ 1 file changed, 15 insertions(+) create mode 100644 mcp/reclass/classes/system/keystone/server/websso.yml (limited to 'mcp/reclass/classes/system/keystone/server/websso.yml') diff --git a/mcp/reclass/classes/system/keystone/server/websso.yml b/mcp/reclass/classes/system/keystone/server/websso.yml new file mode 100644 index 000000000..0960ccb32 --- /dev/null +++ b/mcp/reclass/classes/system/keystone/server/websso.yml @@ -0,0 +1,15 @@ +classes: +- service.shibboleth.server.cluster +parameters: + keystone: + server: + websso: + protocol: saml2 + remote_id_attribute: Shib-Identity-Provider + federation_driver: keystone.contrib.federation.backends.sql.Federation + trusted_dashboard: + - https://${_param:cluster_public_host}/auth/websso/ + - https://${_param:proxy_vip_host}/auth/websso/ + auth_methods: + - saml2 + - external -- cgit 1.2.3-korg