2016-10-14 15:58:57 +00:00
|
|
|
# The base path of dex and the external name of the OpenID Connect service.
|
|
|
|
# Clients use this value to do discovery.
|
|
|
|
issuer: http://127.0.0.1:5556/dex
|
|
|
|
|
|
|
|
# The storage configuration determines where dex stores its state. Supported
|
|
|
|
# options include SQL flavors and Kubernetes third party resources.
|
2016-08-05 16:50:22 +00:00
|
|
|
storage:
|
2016-10-03 19:46:49 +00:00
|
|
|
type: sqlite3
|
|
|
|
config:
|
|
|
|
file: examples/dex.db
|
2016-08-05 16:50:22 +00:00
|
|
|
|
2016-10-14 15:58:57 +00:00
|
|
|
# Configuration for the
|
2016-08-05 16:50:22 +00:00
|
|
|
web:
|
|
|
|
http: 127.0.0.1:5556
|
2016-10-14 15:58:57 +00:00
|
|
|
# HTTPS options are also supported:
|
|
|
|
# https: 127.0.0.1:5554
|
|
|
|
# tlsCert: /etc/dex/tls.crt
|
|
|
|
# tlsKey: /etc/dex/tls.key
|
2016-08-05 16:50:22 +00:00
|
|
|
|
2016-10-14 15:58:57 +00:00
|
|
|
# Uncomment this block to enable the gRPC API.
|
|
|
|
# grpc:
|
|
|
|
# addr: 127.0.0.1:5557
|
|
|
|
# tlsCert: /etc/dex/grpc.crt
|
|
|
|
# tlsKey: /etc/dex/grpc.key
|
2016-08-05 16:50:22 +00:00
|
|
|
|
2016-10-05 23:50:02 +00:00
|
|
|
# Instead of reading from an external storage, use this list of clients.
|
2016-10-14 15:58:57 +00:00
|
|
|
#
|
|
|
|
# If this option isn't choosen clients may be added through the gRPC API.
|
2016-08-05 16:50:22 +00:00
|
|
|
staticClients:
|
|
|
|
- id: example-app
|
|
|
|
redirectURIs:
|
|
|
|
- 'http://127.0.0.1:5555/callback'
|
|
|
|
name: 'Example App'
|
|
|
|
secret: ZXhhbXBsZS1hcHAtc2VjcmV0
|
2016-10-05 23:50:02 +00:00
|
|
|
|
2016-10-14 15:58:57 +00:00
|
|
|
connectors:
|
|
|
|
- type: mockCallback
|
|
|
|
id: mock
|
|
|
|
name: Example
|
|
|
|
|
|
|
|
# Let dex keep a list of passwords which can be used to login the user
|
2016-10-05 23:50:02 +00:00
|
|
|
enablePasswordDB: true
|
|
|
|
|
|
|
|
# A static list of passwords to login the end user. By identifying here, dex
|
2016-10-14 15:58:57 +00:00
|
|
|
# won't look in its underlying storage for passwords.
|
|
|
|
#
|
|
|
|
# If this option isn't choosen users may be added through the gRPC API.
|
2016-10-05 23:50:02 +00:00
|
|
|
staticPasswords:
|
|
|
|
- email: "admin@example.com"
|
|
|
|
# bcrypt hash of the string "password"
|
|
|
|
hash: "JDJhJDE0JDh4TnlVZ3pzSmVuQm4ySlRPT2QvbmVGcUlnQzF4TEFVRFA3VlpTVzhDNWlkLnFPcmNlYUJX"
|
|
|
|
username: "admin"
|
|
|
|
userID: "08a8684b-db88-4b73-90a9-3cd1661f5466"
|
2016-10-14 15:58:57 +00:00
|
|
|
|