From 451e02c95279c1adbae2bc0c6f96901fdfc6f74d Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Jakub=20Soko=C5=82owski?= Date: Thu, 2 Jan 2025 16:20:45 +0100 Subject: [PATCH] dash.nimbus: fix secrets for Kibana OAuth proxy MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Signed-off-by: Jakub SokoĊ‚owski --- ansible/group_vars/dash.nimbus.yml | 6 +++--- ansible/requirements.yml | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/ansible/group_vars/dash.nimbus.yml b/ansible/group_vars/dash.nimbus.yml index eb93b36..9f1060f 100644 --- a/ansible/group_vars/dash.nimbus.yml +++ b/ansible/group_vars/dash.nimbus.yml @@ -30,9 +30,9 @@ oauth_upstream_addr: '{{ kibana_cont_name }}' oauth_upstream_port: '{{ kibana_cont_port }}' oauth_local_port: 4180 oauth_provider: 'keycloak-oidc' -oauth_id: '{{lookup("vault", "kibana/oauth", field="client-id")}}' -oauth_secret: '{{lookup("vault", "kibana/oauth", field="secret")}}' -oauth_cookie_secret: '{{lookup("vault", "kibana/oauth", field="cookie-secret")}}' +oauth_id: '{{lookup("vault", "kibana/oauth", field="client-id", env="nimbus", stage="dash")}}' +oauth_secret: '{{lookup("vault", "kibana/oauth", field="secret", env="nimbus", stage="dash")}}' +oauth_cookie_secret: '{{lookup("vault", "kibana/oauth", field="cookie-secret", env="nimbus", stage="dash")}}' # ElasticSearch Load Balancer es_lb_service_name: 'elasticsearch' diff --git a/ansible/requirements.yml b/ansible/requirements.yml index 493ee81..75ceb34 100644 --- a/ansible/requirements.yml +++ b/ansible/requirements.yml @@ -26,7 +26,7 @@ - name: infra-role-oauth-proxy src: git@github.com:status-im/infra-role-oauth-proxy.git - version: 7ce78de798ee8c1e4ecd8c0e6d23d86889d57839 + version: d811225c9d0a64f5e73c1f70585d190be7def2c9 - name: infra-role-consul-service src: git@github.com:status-im/infra-role-consul-service.git