the first one allows CAS to act as an OIDC provider, which could be useful if the SP is being replaced by the geOrchestra gateway but we still want to have our own identity provier.
The second one is sometimes used by Camptocamp deployments to be able to send some issues into a Sentry.io instance
These are not needed per se, but: