Uploaded image for project: 'Red Hat 3scale API Management'
  1. Red Hat 3scale API Management
  2. THREESCALE-5379

Document that a different realm must be used if the same credentials are being used across services

XMLWordPrintable

    • API CCS Sprint 44 (3Scale) 2

      2 applications can have the same client_id. The same client_id can be set using the 3scale API Application Create endpoint, as explained in this KCS. Those applications however must belong to different Products. When configuring the Products with the OIDC integration, each Product must be configured with a different OIDC issuer (using a different Realm in RH-SSO) to ensure a many to many mapping with RH-SSO, otherwise the second application won't be synchronised in RH-SSO since the client (client_id) already exists.

      The request is to document this use case:

      • 2 applications can have the same client_id but they must be belong to different Products.
      • Each Product must be configured with a different OIDC issuer (a different Realm in RH-SSO).

            Unassigned Unassigned
            rhn-support-avilatus Anna Vila Tusell
            Darren Fennessy Darren Fennessy
            Dominik Hlavac Duran Dominik Hlavac Duran
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: