Switch Pagure to OIDC in prod

Signed-off-by: Aurélien Bompard <aurelien@bompard.org>
This commit is contained in:
Aurélien Bompard 2024-11-13 09:24:28 +01:00
parent be377b8267
commit 297d92b7b0
No known key found for this signature in database
GPG key ID: 31584CFEB9BF64AD

View file

@ -195,7 +195,6 @@ DISABLED_PLUGINS = ['IRC']
### Switch the authentication method
# Specify which authentication method to use: `openid`, `oidc`, `local`
# Default: ``fas``.
{% if env == 'pagure-staging' %}
PAGURE_AUTH = 'oidc'
OIDC_CLIENT_SECRETS = "/etc/pagure/client_secrets.json"
OIDC_ID_TOKEN_COOKIE_SECURE = True
@ -210,9 +209,6 @@ OIDC_PAGURE_USERNAME = 'preferred_username'
OIDC_PAGURE_SSH_KEY = 'ssh_key'
OIDC_PAGURE_GROUPS = 'groups'
OIDC_PAGURE_USERNAME_FALLBACK = 'nickname'
{% else %}
PAGURE_AUTH = 'openid'
{% endif %}
# When this is set to True, the session cookie will only be returned to the
# server via ssl (https). If you connect to the server via plain http, the