Skip to content

fix(keycloak): use service account for config imports#40

Merged
jmgilman merged 1 commit intomasterfrom
session-052/keycloak-config-client
May 1, 2026
Merged

fix(keycloak): use service account for config imports#40
jmgilman merged 1 commit intomasterfrom
session-052/keycloak-config-client

Conversation

@jmgilman
Copy link
Copy Markdown
Contributor

@jmgilman jmgilman commented May 1, 2026

Summary

  • add a confidential glab-keycloak-config service account to the lab realm
  • use client credentials for hash-driven config imports after the first import
  • keep bootstrap admin auth only for true first import

Testing

  • cd aws/keycloak && just check
  • moon run aws-keycloak:check --summary minimal
  • jq empty aws/keycloak/templates/keycloak/lab-realm.json.tftpl
  • git diff --check

@jmgilman jmgilman merged commit 5083057 into master May 1, 2026
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant