Skip to content

Commit

Permalink
Test relying on OIDC_ISSUER instead of USER_API
Browse files Browse the repository at this point in the history
  • Loading branch information
jawadqur committed Apr 11, 2024
1 parent 9f06ff0 commit 82d4bc3
Show file tree
Hide file tree
Showing 3 changed files with 8 additions and 4 deletions.
3 changes: 2 additions & 1 deletion sheepdog/blueprint/routes/views/__init__.py
Original file line number Diff line number Diff line change
Expand Up @@ -58,7 +58,8 @@ def get_programs():
if flask.current_app.config.get("AUTH_SUBMISSION_LIST", True) is True:
auth.validate_request(
scope={"openid"},
audience=flask.current_app.config.get("USER_API"),
audience=flask.current_app.config.get("OIDC_ISSUER")
or flask.current_app.config.get("USER_API"),
purpose=None,
)
with flask.current_app.db.session_scope():
Expand Down
3 changes: 2 additions & 1 deletion sheepdog/blueprint/routes/views/program/__init__.py
Original file line number Diff line number Diff line change
Expand Up @@ -61,7 +61,8 @@ def get_projects(program):
if flask.current_app.config.get("AUTH_SUBMISSION_LIST", True) is True:
auth.validate_request(
scope={"openid"},
audience=flask.current_app.config.get("USER_API"),
audience=flask.current_app.config.get("OIDC_ISSUER")
or flask.current_app.config.get("USER_API"),
purpose=None,
)
with flask.current_app.db.session_scope():
Expand Down
6 changes: 4 additions & 2 deletions sheepdog/blueprint/routes/views/program/project.py
Original file line number Diff line number Diff line change
Expand Up @@ -135,7 +135,8 @@ def get_project_dictionary(program=None, project=None):
if flask.current_app.config.get("AUTH_SUBMISSION_LIST", True) is True:
auth.validate_request(
scope={"openid"},
audience=flask.current_app.config.get("USER_API"),
audience=flask.current_app.config.get("OIDC_ISSUER")
or flask.current_app.config.get("USER_API"),
purpose=None,
)
keys = list(dictionary.schema.keys()) + ["_all"]
Expand Down Expand Up @@ -235,7 +236,8 @@ def get_project_dictionary_entry(program, project, entry):
if flask.current_app.config.get("AUTH_SUBMISSION_LIST", True) is True:
auth.validate_request(
scope={"openid"},
audience=flask.current_app.config.get("USER_API"),
audience=flask.current_app.config.get("OIDC_ISSUER")
or flask.current_app.config.get("USER_API"),
purpose=None,
)
return get_dictionary_entry(entry)
Expand Down

0 comments on commit 82d4bc3

Please sign in to comment.