Files
doorboy-proxy/app/kube.py
rasmus c5d4f603e2 fix slack-kube auth
1. reorder slack auth methods
2. refactor + fix kube slack lookup
2026-06-11 23:03:35 +03:00

50 lines
1.5 KiB
Python

import os
from typing import List, Tuple
from kubernetes import client, config
OIDC_USERS_NAMESPACE = os.environ["OIDC_USERS_NAMESPACE"]
def groupsToFullName(groups) -> List[str]:
fullName: List[str] = []
for group in groups:
fullName.append(
group.get("prefix", "") + ":" + group.get("name", "")
)
return fullName
def users_with_group(requiredGroup: str) -> List[str]:
config.load_incluster_config()
api_instance = client.CustomObjectsApi()
users: List[str] = []
ret = api_instance.list_namespaced_custom_object(
"codemowers.cloud", "v1beta1", OIDC_USERS_NAMESPACE, "oidcusers"
)
for item in ret["items"]:
for group in groupsToFullName(item.get("status", {}).get("groups", [])):
if group == requiredGroup:
users.append(item["metadata"]["name"])
continue
print(f"INFO: {len(users)} users in group {requiredGroup}")
return users
# -> (groups[], username)
def by_slackid(slack_id: str) -> Tuple[List[str], str]:
config.load_incluster_config()
api_instance = client.CustomObjectsApi()
ret = api_instance.list_namespaced_custom_object(
"codemowers.cloud", "v1beta1", OIDC_USERS_NAMESPACE, "oidcusers"
)
for item in ret["items"]:
if slack_id == item.get("status", {}).get("slackId", None):
return groupsToFullName(item.get("status", {}).get("groups", [])), item.get("metadata", {}).get("name", "")
return [], ""