-
Notifications
You must be signed in to change notification settings - Fork 33
feat: expose oauth s2s env #899
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: master
Are you sure you want to change the base?
Conversation
4f22b03 to
86b932c
Compare
Codecov Report✅ All modified and coverable lines are covered by tests. 📢 Thoughts on this report? Let us know! |
| if (typeof oauthS2SCredential === 'object') { | ||
| extraEnvVars = { [SERVICE_API_KEY_ENV]: serviceClientId, [IMS_OAUTH_S2S_ENV]: JSON.stringify(oauthS2SCredential) } | ||
| } else { | ||
| extraEnvVars = { [SERVICE_API_KEY_ENV]: serviceClientId } |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Note: we should deprecate and delete that one eventually
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
which are you referring to? perhaps we need to file a jira so we don't forget
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
the SERVICE_API_KEY=<client_id>
| if (typeof oauthS2SCredential === 'object') { | ||
| extraEnvVars = { [SERVICE_API_KEY_ENV]: serviceClientId, [IMS_OAUTH_S2S_ENV]: JSON.stringify(oauthS2SCredential) } | ||
| } else { | ||
| extraEnvVars = { [SERVICE_API_KEY_ENV]: serviceClientId } |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
which are you referring to? perhaps we need to file a jira so we don't forget
Description
Alternative implementation to #892, here the idea is to hook on the Console config loading and extract the
oauth_server_to_servercredential only. We can add more credential types later on if needed.The proposed change stores the whole credential in an IMS API query-params compliant environment variable, JSON stringified. Here is an example
As this is exposed to the user's
.envthe goal is readability and ease of retrieval. Having a single JSON var is up to debate, we can also unpack into multiple variables.Related Issue
Motivation and Context
How Has This Been Tested?
Screenshots (if appropriate):
Types of changes
Checklist: