argos/dmp-backend/web/src/main/resources/config/security.yml

20 lines
629 B
YAML
Raw Normal View History

2023-10-11 16:53:12 +02:00
web:
security:
enabled: true
authorized-endpoints: [ api ]
2023-12-05 17:13:40 +01:00
allowed-endpoints: [ api/public, api/description/public, api/dashboard/public ]
2023-10-11 16:53:12 +02:00
idp:
api-key:
enabled: true
authorization-header: Authorization
client-id: ${IDP_APIKEY_CLIENT_ID:}
client-secret: ${IDP_APIKEY_CLIENT_SECRET:}
scope: ${IDP_APIKEY_SCOPE:}
resource:
token-type: JWT #| opaque
2023-10-11 16:53:12 +02:00
opaque:
client-id: ${IDP_OPAQUE_CLIENT_ID:}
client-secret: ${IDP_OPAQUE_CLIENT_SECRET:}
jwt:
claims: [ role, x-role ]
2023-10-17 11:40:47 +02:00
issuer-uri: ${IDP_ISSUER_URI:}