From fa7c9891fad21f46bc21cc42ed121ea38816b14f Mon Sep 17 00:00:00 2001 From: Patrick Uiterwijk Date: Thu, 9 May 2019 14:07:52 +0200 Subject: [PATCH] In openshift, always use oidc.key Signed-off-by: Patrick Uiterwijk --- roles/ipsilon/templates/configuration.conf | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/roles/ipsilon/templates/configuration.conf b/roles/ipsilon/templates/configuration.conf index bc8f6db1f3..714017cd80 100644 --- a/roles/ipsilon/templates/configuration.conf +++ b/roles/ipsilon/templates/configuration.conf @@ -34,7 +34,11 @@ openidc subject salt={{ ipsilon_stg_openidc_subject_salt }} openidc subject salt={{ ipsilon_openidc_subject_salt }} {% endif %} openidc endpoint url=https://id{{env_suffix}}.fedoraproject.org/openidc/ +{% if inventory_hostname.startswith('os-') %} +openidc idp key file=/etc/ipsilon/openidc.key +{% else %} openidc idp key file=/etc/ipsilon/openidc{{env_suffix}}.key +{% endif %} openidc database url=postgresql://{{ ipsilon_db_user }}:{{ ipsilon_db_pass }}@{{ ipsilon_db_host }}/{{ ipsilon_db_openid_name }} openidc static database url=configfile:///etc/ipsilon/openidc.static.cfg openidc documentation url=https://fedoraproject.org/wiki/Infrastructure/Authentication