Keystone Saml Mellon
- OpenStack Charmers
- Cloud
Channel | Revision | Published | Runs on |
---|---|---|---|
latest/edge | 141 | 17 Nov 2024 | |
latest/edge | 140 | 17 Nov 2024 | |
latest/edge | 139 | 17 Nov 2024 | |
latest/edge | 138 | 17 Nov 2024 | |
latest/edge | 133 | 21 Aug 2024 | |
latest/edge | 132 | 21 Aug 2024 | |
latest/edge | 131 | 21 Aug 2024 | |
latest/edge | 130 | 21 Aug 2024 | |
latest/edge | 79 | 05 Aug 2023 | |
latest/edge | 74 | 05 Aug 2023 | |
latest/edge | 72 | 05 Aug 2023 | |
latest/edge | 70 | 05 Aug 2023 | |
latest/edge | 58 | 17 Apr 2023 | |
latest/edge | 57 | 17 Apr 2023 | |
latest/edge | 56 | 17 Apr 2023 | |
latest/edge | 55 | 17 Apr 2023 | |
latest/edge | 26 | 14 Mar 2023 | |
yoga/stable | 129 | 24 Jul 2024 | |
yoga/stable | 128 | 24 Jul 2024 | |
yoga/stable | 126 | 22 Jul 2024 | |
yoga/stable | 127 | 22 Jul 2024 | |
yoga/stable | 125 | 22 Jul 2024 | |
yoga/stable | 124 | 22 Jul 2024 | |
yoga/stable | 123 | 22 Jul 2024 | |
yoga/stable | 122 | 22 Jul 2024 | |
zed/stable | 121 | 16 Jul 2024 | |
zed/stable | 120 | 15 Jul 2024 | |
zed/stable | 44 | 23 Jan 2023 | |
zed/stable | 43 | 23 Jan 2023 | |
xena/stable | 47 | 16 Jan 2023 | |
wallaby/stable | 48 | 23 Jan 2023 | |
victoria/stable | 50 | 26 Jan 2023 | |
ussuri/stable | 63 | 01 Jun 2023 | |
train/candidate | 46 | 13 Dec 2022 | |
train/edge | 49 | 16 Jan 2023 | |
stein/candidate | 46 | 13 Dec 2022 | |
stein/edge | 49 | 16 Jan 2023 | |
stein/edge | 12 | 13 Dec 2022 | |
rocky/candidate | 46 | 13 Dec 2022 | |
rocky/edge | 49 | 16 Jan 2023 | |
queens/candidate | 46 | 13 Dec 2022 | |
queens/edge | 49 | 16 Jan 2023 | |
2024.1/candidate | 91 | 02 May 2024 | |
2024.1/candidate | 90 | 02 May 2024 | |
2024.1/candidate | 89 | 02 May 2024 | |
2024.1/candidate | 88 | 02 May 2024 | |
2023.2/stable | 111 | 01 Jul 2024 | |
2023.2/stable | 110 | 01 Jul 2024 | |
2023.2/stable | 109 | 01 Jul 2024 | |
2023.2/stable | 108 | 01 Jul 2024 | |
2023.2/stable | 107 | 01 Jul 2024 | |
2023.2/stable | 106 | 01 Jul 2024 | |
2023.2/stable | 105 | 01 Jul 2024 | |
2023.2/stable | 104 | 01 Jul 2024 | |
2023.1/stable | 119 | 09 Jul 2024 | |
2023.1/stable | 118 | 09 Jul 2024 | |
2023.1/stable | 117 | 09 Jul 2024 | |
2023.1/stable | 116 | 09 Jul 2024 |
juju deploy keystone-saml-mellon --channel yoga/stable
Deploy universal operators easily with Juju, the Universal Operator Lifecycle Manager.
Platform:
Federated identity with SAML via Mellon Service Provider
The main goal of this charm is to generate the necessary configuration for use in the Keystone charm related to Service Provider config generation, trust establishment between a remote idP and SP via certificates and signaling Keystone service restart. Keystone has a concept of a federated backend which serves multiple purposes including being a backend part of a Service Provider in an authentication scenario where SAML is used. Unless ECP is used on a keystone client side, SAML-related exchange is performed in an Apache authentication module (Mellon in case of this charm) and SAML assertions are converted to WSGI environment variables passed down to a particular mod_wsgi interpreter running Keystone code. Keystone has an authentication plug-in called "mapped" which does the rest of the work of resolving symbolic attributes and using them in mappings defined by an operator or validating the existence of referenced IDs.