Closed tylerschultz closed 3 years ago
This would be really useful to have. Especially with many environments and many back-ends, it makes the configuration less error prone and a lot more convenient.
Seems like we already have some feature requests. @Shikugawa is already working on this.
@Shikugawa Can you work on providing documentation and verify this works E2E? I tried myself but not working when using JWKS URI, (changing this back to the inlined jwks would work again).
"jwks_fetcher": {
"jwks_uri": "https://www.googleapis.com/oauth2/v3/certs"
},
@Shikugawa Can you work on providing documentation and verify this works E2E? I tried myself but not working when using JWKS URI, (changing this back to the inlined jwks would work again).
Ways to reproduce
- Follow instructions in book-info/readme.md
- Setup image to (You can build your own and swap to make sure), via helm --set authservie.image="ghcr.io/istio-ecosystem/authservice/authservice:dev"
- Change the config.yaml as
"jwks_fetcher": { "jwks_uri": "https://www.googleapis.com/oauth2/v3/certs" },
- port forwarding, send requests, etc. You will see the request stuck at the callback. the authserivce pod has the error as , authsvc.log
@incfly Seems curious. Let me check.
Placeholder issue. Details TBD.