Uploaded image for project: 'Red Hat 3scale API Management'
  1. Red Hat 3scale API Management
  2. THREESCALE-5379

Document that a different realm must be used if the same credentials are being used across services

XMLWordPrintable

    • API CCS Sprint 44 (3Scale) 2

      2 applications can have the same client_id. The same client_id can be set using the 3scale API Application Create endpoint, as explained in this KCS. Those applications however must belong to different Products. When configuring the Products with the OIDC integration, each Product must be configured with a different OIDC issuer (using a different Realm in RH-SSO) to ensure a many to many mapping with RH-SSO, otherwise the second application won't be synchronised in RH-SSO since the client (client_id) already exists.

      The request is to document this use case:

      • 2 applications can have the same client_id but they must be belong to different Products.
      • Each Product must be configured with a different OIDC issuer (a different Realm in RH-SSO).

              Unassigned Unassigned
              rhn-support-avilatus Anna Vila Tusell
              Darren Fennessy Darren Fennessy
              Dominik Hlavac Duran Dominik Hlavac Duran
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: