以 IaC 管理 Incus 接入与 Ayatori 双环境基础容器
This commit is contained in:
@@ -0,0 +1,30 @@
|
||||
# 独立增量声明:全量 values.yaml 尚未覆盖所有线上客户端,不能用它覆盖 release。
|
||||
authorization_policies:
|
||||
incus_admin:
|
||||
default_policy: deny
|
||||
rules:
|
||||
- policy: two_factor
|
||||
subject: user:panxiao81
|
||||
clients:
|
||||
- client_id: incus
|
||||
client_name: Incus
|
||||
public: true
|
||||
authorization_policy: incus_admin
|
||||
require_pkce: true
|
||||
pkce_challenge_method: S256
|
||||
redirect_uris:
|
||||
- https://incus.ad.ddupan.top/oidc/callback
|
||||
audience:
|
||||
- https://incus.ad.ddupan.top
|
||||
scopes:
|
||||
- openid
|
||||
- offline_access
|
||||
response_types:
|
||||
- code
|
||||
grant_types:
|
||||
- authorization_code
|
||||
- refresh_token
|
||||
- urn:ietf:params:oauth:grant-type:device_code
|
||||
access_token_signed_response_alg: RS256
|
||||
userinfo_signed_response_alg: none
|
||||
token_endpoint_auth_method: none
|
||||
Reference in New Issue
Block a user