Keystone OIDC fails to validate JWST on Azure auth-oidc endpoint.
Bug #1990375 reported by
Jakub Darmach
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
kolla-ansible |
Fix Released
|
Undecided
|
Jakub Darmach |
Bug Description
Using OIDC keystone integration with Azure AD. JWST fails to validate oauth-oidc endpoint, used by openstack-cli client. Error thrown is:
2022-09-20 12:05:49.669686 oidc_proto_
2022-09-20 12:05:49.669724 oidc_oauth_
Looks like it doesn't use jwks_uri present in metadata. According to the docs oauth0oidc endpoint (used by cli) needs "OIDCOAuthVerif
Changed in kolla-ansible: | |
assignee: | nobody → Jakub Darmach (darmachj) |
To post a comment you must log in.
Fix proposed to branch: master /review. opendev. org/c/openstack /kolla- ansible/ +/858698
Review: https:/