File: prodkeycloak

package info (click to toggle)
rabbitmq-server 4.0.5-8
  • links: PTS, VCS
  • area: main
  • in suites: sid
  • size: 37,972 kB
  • sloc: erlang: 257,835; javascript: 22,466; sh: 3,037; makefile: 2,517; python: 1,966; xml: 646; cs: 335; java: 244; ruby: 212; php: 100; perl: 63; awk: 13
file content (54 lines) | stat: -rw-r--r-- 2,186 bytes parent folder | download | duplicates (2)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
#!/usr/bin/env bash

KEYCLOAK_DOCKER_IMAGE=quay.io/keycloak/keycloak:20.0

ensure_prodkeycloak() {
  if docker ps | grep prodkeycloak &> /dev/null; then
     print "prodkeycloak already running ..."
 else
   start_prodkeycloak
 fi
}
init_prodkeycloak() {
  PRODKEYCLOAK_CONFIG_PATH=${PRODKEYCLOAK_CONFIG_PATH:-multi-oauth/prodkeycloak}
  PRODKEYCLOAK_CONFIG_DIR=$(realpath ${TEST_DIR}/${PRODKEYCLOAK_CONFIG_PATH})

  print "> PRODKEYCLOAK_CONFIG_DIR: ${PRODKEYCLOAK_CONFIG_DIR}"
  print "> PRODKEYCLOAK_URL: ${PRODKEYCLOAK_URL}"
  print "> KEYCLOAK_DOCKER_IMAGE: ${KEYCLOAK_DOCKER_IMAGE}"

  generate-ca-server-client-kpi prodkeycloak $PRODKEYCLOAK_CONFIG_DIR
}
start_prodkeycloak() {
  begin "Starting prodkeycloak ..."

  init_prodkeycloak
  kill_container_if_exist prodkeycloak

  MOUNT_PRODKEYCLOAK_CONF_DIR=$CONF_DIR/prodkeycloak

  mkdir -p $MOUNT_PRODKEYCLOAK_CONF_DIR
  ${BIN_DIR}/gen-keycloak-json ${PRODKEYCLOAK_CONFIG_DIR} "prod-realm" $ENV_FILE $MOUNT_PRODKEYCLOAK_CONF_DIR/prod-realm.json
  print "> EFFECTIVE PRODKEYCLOAK_CONFIG_FILE: $MOUNT_PRODKEYCLOAK_CONF_DIR/prod-realm.json"
  cp ${PRODKEYCLOAK_CONFIG_DIR}/*.pem $MOUNT_PRODKEYCLOAK_CONF_DIR

  docker run \
		--detach \
		--name prodkeycloak \
    --net ${DOCKER_NETWORK} \
		--publish 8081:8080 \
    --publish 8443:8443 \
		--env KEYCLOAK_ADMIN=admin \
		--env KEYCLOAK_ADMIN_PASSWORD=admin \
		--mount type=bind,source=${MOUNT_PRODKEYCLOAK_CONF_DIR},target=/opt/keycloak/data/import/ \
		${KEYCLOAK_DOCKER_IMAGE} start-dev --import-realm \
    --https-certificate-file=/opt/keycloak/data/import/server_prodkeycloak_certificate.pem \
    --https-certificate-key-file=/opt/keycloak/data/import/server_prodkeycloak_key.pem \
    --hostname=prodkeycloak --hostname-admin=prodkeycloak --https-port=8443

  wait_for_oidc_endpoint prodkeycloak $PRODKEYCLOAK_URL $MOUNT_PRODKEYCLOAK_CONF_DIR/ca_prodkeycloak_certificate.pem
  end "prodkeycloak is ready"
  print " Note: If you modify prodkeycloak configuration, make sure to run the following command to export the configuration."
  print " docker exec -it prodkeycloak /opt/keycloak/bin/kc.sh export --users realm_file --realm test --dir /opt/keycloak/data/import/"

}