[
https://issues.apache.org/jira/browse/KNOX-3214?focusedWorklogId=994647&page=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-994647
]
ASF GitHub Bot logged work on KNOX-3214:
----------------------------------------
Author: ASF GitHub Bot
Created on: 03/Dec/25 18:51
Start Date: 03/Dec/25 18:51
Worklog Time Spent: 10m
Work Description: smolnar82 commented on code in PR #1116:
URL: https://github.com/apache/knox/pull/1116#discussion_r2586250692
##########
.github/workflows/build/conf/topologies/knoxtoken.xml:
##########
@@ -0,0 +1,56 @@
+<!--
+Licensed to the Apache Software Foundation (ASF) under one
+or more contributor license agreements. See the NOTICE file
+distributed with this work for additional information
+regarding copyright ownership. The ASF licenses this file
+to you under the Apache License, Version 2.0 (the
+"License"); you may not use this file except in compliance
+with the License. You may obtain a copy of the License at
+
+http://www.apache.org/licenses/LICENSE-2.0
+
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
+See the License for the specific language governing permissions and
+limitations under the License.
+-->
+<topology>
+ <gateway>
+ <provider>
+ <role>federation</role>
+ <name>JWTProvider</name>
+ <enabled>true</enabled>
+ <param>
+ <name>knox.token.use.cookie</name>
+ <value>false</value>
+ </param>
+ <param>
+ <name>jwt.expected.sigalg</name>
+ <value>RS256</value>
+ </param>
+ </provider>
+ </gateway>
+ <service>
+ <role>KNOXTOKEN</role>
+ <param>
+ <name>knoxsso.token.ttl</name>
+ <value>86400000</value>
+ </param>
+ </service>
+ <service>
+ <role>KNOX-AUTH-SERVICE</role>
+ <param>
+ <name>preauth.auth.header.actor.id.name</name>
+ <value>x-knox-actor-username</value>
+ </param>
+ <param>
+ <name>preauth.auth.header.actor.groups.prefix</name>
+ <value>x-knox-actor-groups</value>
+ </param>
+ <param>
+ <name>preauth.group.filter.pattern</name>
+ <value>[^\s]+</value>
+ </param>
+ </service>
+</topology>
Review Comment:
I still don't see where this topology is used.
Based on the JWT federation provider and the `KNOXTOKEN` service I can see
some token exchange flows here.
What's the purpose of the `KNOX-AUTH-SERVICE`?
Issue Time Tracking
-------------------
Worklog Id: (was: 994647)
Time Spent: 2h 10m (was: 2h)
> Add docker based integration tests
> ----------------------------------
>
> Key: KNOX-3214
> URL: https://issues.apache.org/jira/browse/KNOX-3214
> Project: Apache Knox
> Issue Type: Bug
> Components: CI
> Reporter: Sandeep More
> Assignee: Sandeep More
> Priority: Major
> Time Spent: 2h 10m
> Remaining Estimate: 0h
>
> Add support for docker based integration tests.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)