Skip to content

Instantly share code, notes, and snippets.

@mhahl
Created July 15, 2022 03:03
Show Gist options
  • Save mhahl/82a02d7fe1d302f7e2bc5fe6ea80bc7f to your computer and use it in GitHub Desktop.
Save mhahl/82a02d7fe1d302f7e2bc5fe6ea80bc7f to your computer and use it in GitHub Desktop.
kind: ConfigMap
apiVersion: v1
metadata:
name: ldap-ca-ipa
namespace: openshift-config
data:
ca.crt: |
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
kind: Secret
apiVersion: v1
metadata:
name: ldap-bind-password-ipa
namespace: openshift-config
data:
bindPassword: cGFzc3dvcmQ=
type: Opaque
apiVersion: config.openshift.io/v1
kind: OAuth
metadata:
name: cluster
spec:
identityProviders:
- ldap:
attributes:
email:
- mail
id:
- dn
name:
- displayName
preferredUsername:
- uid
bindDN: 'uid=svc-hahl-ocp_bind,cn=users,cn=accounts,dc=hahl,dc=id,dc=au'
bindPassword:
name: ldap-bind-password-ipa
ca:
name: ldap-ca-ipa
insecure: false
url: >-
ldaps://idm01.hahl.id.au:636/cn=users,cn=accounts,dc=hahl,dc=id,dc=au?uid?sub?(memberOf=cn=grp-hahl-admins,cn=groups,cn=accounts,dc=hahl,dc=id,dc=au)
mappingMethod: claim
name: ldap
type: LDAP
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment