-
Story
-
Resolution: Done
-
Undefined
-
None
-
None
-
None
-
8
-
False
-
-
False
-
-
-
DFG Security: Test Sprint 2, DFG Security: Test Sprint 3
-
2
Goal:
We will base this on the downstream tests with keycloak for OIDC federation. Instead of keycloak, we will spin up the freeipa-operator and configure it with the initial set of users/groups. After this setup, we will do tests calling the keystone api.
Link to the OSP18 keycloak test of OIDC federation:
https://gitlab.cee.redhat.com/ci-framework/ci-framework-jobs/-/blob/main/zuul.d/keystone-component-jobs-rhoso-18-rhel9.yaml?ref_type=heads#L53
Adding initial users and groups in the OSP17 job:
https://gitlab.cee.redhat.com/OSP-DFG-security/automation/-/blob/master/playbooks/freeipa-user-group-add.yml
Testing the users and groups with keystone in the OSP17 job:
https://gitlab.cee.redhat.com/OSP-DFG-security/automation/-/blob/master/playbooks/keystone-ldap.yml
- links to