cozystack/packages/extra/info
Timofei Larkin de2bbd35c2
[keycloak] Make kubernetes client public (#1802)
## What this PR does

By its nature, the kubernetes client provisioned in keycloak is public:
anyone can read the client secret. Therefore the secret is not necessary
and the client should be explicitly provisioned as a public client, not
as a confidential client.

### Release note

```release-note
[keycloak] Change the kubernetes client to be public, without a client
secret.
```

<!-- This is an auto-generated comment: release notes by coderabbit.ai
-->
## Summary by CodeRabbit

* **New Features**
* Add OIDC enablement flag and optional host derivation from tenant
release; allow explicit management kubeconfig endpoint override.

* **Refactor**
* Convert Keycloak client to public mode and remove reliance on a
Kubernetes client secret, simplifying authentication configuration.
* Remove secret-based credential plumbing from deployment templates,
streamlining kubeconfig generation.

<sub>✏️ Tip: You can customize this high-level summary in your review
settings.</sub>
<!-- end of auto-generated comment: release notes by coderabbit.ai -->
2026-01-09 14:54:03 +01:00
..
charts Configure all apps to use new function to generate subjects 2025-06-16 20:32:11 +02:00
logos Add new info logo in common style (#649) 2025-02-25 15:12:06 +01:00
templates [keycloak] Make kubernetes client public (#1802) 2026-01-09 14:54:03 +01:00
.helmignore feature/mv-kubeconfig 2025-02-20 15:23:54 +03:00
Chart.yaml Remove versions_map logic 2025-09-24 12:32:37 +02:00
Makefile [cozystack-api] Implement TenantNamespace, TenantModules, TenantSecret and TenantSecretsTable resources 2025-09-24 18:27:54 +02:00
README.md Get rid of bitnami's readme-generator 2025-07-18 00:40:31 +02:00
values.schema.json [apps] Use new OpenAPI schema and README generator for packages/apps 2025-08-11 12:59:50 +03:00
values.yaml Get rid of bitnami's readme-generator 2025-07-18 00:40:31 +02:00

Info

Parameters