Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
fix: explicitly enable native role mappings for Mock IDP (#184017)
## Summary The most recent versions of the Serverless Elasticsearch disable native role mappings by default and this conflicts with the Mock IDP package/plugin that we use for local development and tests. To unblock ES snapshot promotion I explicitly enable native role mappings for Mock IDP only, but eventually we should consider switching to a file-based role mapping (`config/operator/settings.json`, I didn't manage to make it work in a reasonable amount of time). ```bash $ cat config/operator/settings.json { "metadata": { "version": "%s", "compatibility": "8.4.0" }, "state": { "role_mappings": { "mock-idp-mapping": { "enabled": true, "role_templates": [ { "format": "json", "template": "{\"source\":\"{{#tojson}}groups{{/tojson}}\"}" } ], "rules": { "all": [ { "field": { "realm.name": "cloud-saml-kibana" } } ] } } } } } ``` /cc @albertzaharovits
- Loading branch information