From df5d5cd9ea6a0e7c9de2442c6fd7dacfa906b46e Mon Sep 17 00:00:00 2001 From: David Gubler Date: Fri, 26 Jan 2024 15:57:32 +0100 Subject: [PATCH] don't fail if no role found in keycloak groups --- docker-compose-dev.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docker-compose-dev.yml b/docker-compose-dev.yml index b60df56..8a5d231 100644 --- a/docker-compose-dev.yml +++ b/docker-compose-dev.yml @@ -13,7 +13,7 @@ services: - GF_AUTH_GENERIC_OAUTH_LOGIN_ATTRIBUTE_PATH=preferred_username - GF_AUTH_GENERIC_OAUTH_NAME=VSHN Test Keycloak - GF_AUTH_GENERIC_OAUTH_ROLE_ATTRIBUTE_PATH=roles[?contains(@, 'admin')] && 'Admin' || roles[?contains(@, 'editor')] && 'Editor' || roles[?contains(@, 'viewer')] && 'Viewer' || 'Deny' - - GF_AUTH_GENERIC_OAUTH_ROLE_ATTRIBUTE_STRICT=true + - GF_AUTH_GENERIC_OAUTH_ROLE_ATTRIBUTE_STRICT=false - GF_AUTH_GENERIC_OAUTH_SCOPES=openid profile email - GF_AUTH_GENERIC_OAUTH_TOKEN_URL=https://id.test.vshn.net/auth/realms/VSHN-main-dev-realm/protocol/openid-connect/token - GF_SERVER_DOMAIN=operator-dev-grafana.apps.cloudscale-lpg-2.appuio.cloud