Re: OpenShift Origin Active Directory Authentication

2017-07-27 Thread Erik Jacobs
syscorp> [image: Grey_GP] > <https://plus.google.com/+UnisysCorp/posts>[image: Grey_YT] > <http://www.youtube.com/theunisyschannel>[image: Grey_FB] > <http://www.facebook.com/unisyscorp>[image: Grey_Vimeo] > <https://vimeo.com/unisys>[image: Grey_UB] <http:/

RE: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Werner, Mark
zn...@redhat.com] Sent: Wednesday, July 12, 2017 11:44 PM To: Werner, Mark <mark.wer...@unisys.com> Cc: dev <dev@lists.openshift.redhat.com>; Jordan Liggitt <jligg...@redhat.com> Subject: RE: OpenShift Origin Active Directory Authentication You could look at master logs:

Re: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Jordan Liggitt
yscorp> [image: Grey_GP] >> <https://plus.google.com/+UnisysCorp/posts>[image: Grey_YT] >> <http://www.youtube.com/theunisyschannel>[image: Grey_FB] >> <http://www.facebook.com/unisyscorp>[image: Grey_Vimeo] >> <https://vimeo.com/unisys>[image: Grey_UB] &l

RE: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Steve Kuznetsov
mailto:jligg...@redhat.com] > *Sent:* Wednesday, July 12, 2017 11:15 PM > *To:* Werner, Mark <mark.wer...@unisys.com> > *Cc:* Derek Wright <derekmwri...@gmail.com>; > dev@lists.openshift.redhat.com > *Subject:* Re: OpenShift Origin Active Directory Authentication

RE: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Werner, Mark
ys> <http://blogs.unisys.com/> From: Jordan Liggitt [mailto:jligg...@redhat.com] Sent: Wednesday, July 12, 2017 11:15 PM To: Werner, Mark <mark.wer...@unisys.com> Cc: Derek Wright <derekmwri...@gmail.com>; dev@lists.openshift.redhat.com Subject: Re: OpenShift Origin Active Di

Re: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Jordan Liggitt
o] > <https://vimeo.com/unisys>[image: Grey_UB] <http://blogs.unisys.com/> > > > > *From:* Jordan Liggitt [mailto:jligg...@redhat.com] > *Sent:* Wednesday, July 12, 2017 10:58 PM > > *To:* Werner, Mark <mark.wer...@unisys.com> > *Cc:* Derek Wright <derekmwr

Re: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Jordan Liggitt
: Grey_Vimeo] > <https://vimeo.com/unisys>[image: Grey_UB] <http://blogs.unisys.com/> > > > > *From:* Jordan Liggitt [mailto:jligg...@redhat.com] > *Sent:* Wednesday, July 12, 2017 10:49 PM > *To:* Werner, Mark <mark.wer...@unisys.com> > *Cc:* Derek W

Re: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Jordan Liggitt
On Wed, Jul 12, 2017 at 10:41 PM, Werner, Mark wrote: > I am wondering why, if I perform a “oc get identity” that the only > identity that is returned is allow_all? If I changed the master-config.yaml > file to only have the Identity Provider

RE: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Werner, Mark
From: Werner, Mark Sent: Wednesday, July 12, 2017 8:56 PM To: 'Derek Wright' <derekmwri...@gmail.com> Cc: dev@lists.openshift.redhat.com Subject: RE: OpenShift Origin Active Directory Authentication Thanks Derek, It seems I am pretty sure that I have the syntax correct for the Ide

RE: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Werner, Mark
il.com] Sent: Wednesday, July 12, 2017 7:20 PM To: Werner, Mark <mark.wer...@unisys.com> Cc: dev@lists.openshift.redhat.com Subject: Re: OpenShift Origin Active Directory Authentication Hey Mark, Here is my working AD auth configuration (you might need to tailor that URL filtering to

Re: OpenShift Origin Active Directory Authentication

2017-07-12 Thread Derek Wright
Hey Mark, Here is my working AD auth configuration (you might need to tailor that URL filtering to your needs): oauthConfig: assetPublicURL: https://:8443/console/ grantConfig: method: auto identityProviders: - challenge: true login: true mappingMethod: claim name: