4b3769ce483ece06f60f983193712492b920144fJake Feasel{
4b3769ce483ece06f60f983193712492b920144fJake Feasel "serverAuthContext" : {
4b3769ce483ece06f60f983193712492b920144fJake Feasel "sessionModule" : {
4b3769ce483ece06f60f983193712492b920144fJake Feasel "name" : "JWT_SESSION",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "properties" : {
4b3769ce483ece06f60f983193712492b920144fJake Feasel "keyAlias" : "openidm-localhost",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "privateKeyPassword" : "&{openidm.keystore.password}",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "keystoreType" : "&{openidm.keystore.type}",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "keystoreFile" : "&{openidm.keystore.location}",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "keystorePassword" : "&{openidm.keystore.password}",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "maxTokenLifeMinutes" : "120",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "tokenIdleTimeMinutes" : "30",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "sessionOnly" : true
4b3769ce483ece06f60f983193712492b920144fJake Feasel }
4b3769ce483ece06f60f983193712492b920144fJake Feasel },
4b3769ce483ece06f60f983193712492b920144fJake Feasel "authModules" : [
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller {
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller "name" : "STATIC_USER",
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller "properties" : {
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller "queryOnResource" : "repo/internal/user",
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller "username" : "anonymous",
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller "password" : "anonymous",
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller "defaultUserRoles" : [ "openidm-reg" ]
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller },
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller "enabled" : true
194cdefb77cf5217ac87c29c6412db51bd6b8c8dBrendan Mmiller },
4b3769ce483ece06f60f983193712492b920144fJake Feasel {
4b3769ce483ece06f60f983193712492b920144fJake Feasel "name" : "MANAGED_USER",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "properties" : {
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "queryId" : "credential-query",
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "queryOnResource" : "managed/user",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "propertyMapping" : {
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "authenticationId" : "username",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "userCredential" : "password",
48a99a679220c6522d8b11dc1305f7780ae02a8eJake Feasel "userRoles" : "authzRoles"
4b3769ce483ece06f60f983193712492b920144fJake Feasel },
4b3769ce483ece06f60f983193712492b920144fJake Feasel "defaultUserRoles" : [ ]
4b3769ce483ece06f60f983193712492b920144fJake Feasel },
4b3769ce483ece06f60f983193712492b920144fJake Feasel "enabled" : true
4b3769ce483ece06f60f983193712492b920144fJake Feasel },
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller {
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller "name" : "INTERNAL_USER",
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller "properties" : {
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "queryId" : "credential-internaluser-query",
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "queryOnResource" : "repo/internal/user",
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller "propertyMapping" : {
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "authenticationId" : "username",
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller "userCredential" : "password",
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller "userRoles" : "roles"
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller },
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller "defaultUserRoles" : [ ]
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller },
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller "enabled" : true
0b90cf39da4c7ba2b843ffd3512d84d009b5dff0Brendan Mmiller },
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller { "name" : "CLIENT_CERT",
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "properties" : {
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "queryOnResource" : "security/truststore",
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "defaultUserRoles" : [ "openidm-cert" ],
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "allowedAuthenticationIdPatterns" : [
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller ]
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller },
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller "enabled" : true
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller },
4b3769ce483ece06f60f983193712492b920144fJake Feasel {
4b3769ce483ece06f60f983193712492b920144fJake Feasel "name" : "PASSTHROUGH",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "properties" : {
4b3769ce483ece06f60f983193712492b920144fJake Feasel "augmentSecurityContext": {
4b3769ce483ece06f60f983193712492b920144fJake Feasel "type" : "text/javascript",
94dade725a55de70aec65a84bc4949882e5277b1Jake Feasel "file" : "auth/populateAsManagedUser.js"
4b3769ce483ece06f60f983193712492b920144fJake Feasel },
db4f02cbee52b92fd37a39aeee44dcd2272bc99cAlin Brici "queryOnResource" : "system/hrdb/account",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "propertyMapping" : {
4b3769ce483ece06f60f983193712492b920144fJake Feasel "authenticationId" : "uid"
4b3769ce483ece06f60f983193712492b920144fJake Feasel },
4b3769ce483ece06f60f983193712492b920144fJake Feasel "managedUserLink" : "systemHrdb_managedUser",
4b3769ce483ece06f60f983193712492b920144fJake Feasel "defaultUserRoles" : [
4b3769ce483ece06f60f983193712492b920144fJake Feasel "openidm-authorized"
4b3769ce483ece06f60f983193712492b920144fJake Feasel ]
4b3769ce483ece06f60f983193712492b920144fJake Feasel },
4b3769ce483ece06f60f983193712492b920144fJake Feasel "enabled" : true
4b3769ce483ece06f60f983193712492b920144fJake Feasel }
4b3769ce483ece06f60f983193712492b920144fJake Feasel ]
4b3769ce483ece06f60f983193712492b920144fJake Feasel }
b4260bb3e2303240ecf6c7e4e5639439c3f98889Brendan Mmiller}