Z
ZITADEL
Z
ZITADEL
Pre-seeding a docker-compose deployment with a service account / org
Original message was deleted
ZITADEL
Join
ZITADEL - Identity infrastructure, simplified for you.
4,316
Members
View on Discord
S
stebenz
•
8/19/24, 1:38 PM
Hi
@Yoav Lavi
, do you mean something like this
https://zitadel.com/docs/self-hosting/deploy/compose#docker-compose-with-service-account?
ZITADEL Docs
The setup is tested against Docker version 20
.10
.17 and Docker Compose version v2
.2
.3
S
stebenz
•
8/19/24, 2:01 PM
Its per default the ZITADEL org
, can be changed with different configuration
S
stebenz
•
8/19/24, 2:01 PM
Otherwise you can also use the machineuser created here
, to add a org via terraform oder API calls
S
stebenz
•
8/19/24, 3:11 PM
You can also look into the defaults
.yaml the env variables should be listed with the configuration
, as an example under
https://github.com/zitadel/zitadel/blob/a4a2455f11febc357ae53338d5fdfd4846849fa4/cmd/defaults.yaml#L611
ZITADEL
_DEFAULTINSTANCE
_INSTANCENAME
GitHub
zitadel/cmd/defaults.yaml at a4a2455f11febc357ae53338d5fdfd4846849f...
ZITADEL
- Identity infrastructure
, simplified for you
.
- zitadel
/zitadel
S
stebenz
•
8/19/24, 3:12 PM
No problem
, happy to help
S
stebenz
•
8/19/24, 3:40 PM
No there is no part in the default config for an OIDC provider
, that
's for example where a terraform provider could come in
S
stebenz
•
8/19/24, 3:55 PM
yes
S
stebenz
•
8/19/24, 4:41 PM
you can use also prompt
=none
https://zitadel.com/docs/apis/openidoauth/endpoints#additional-parameters
ZITADEL Docs
OpenID Connect 1
.0 Discovery
S
stebenz
•
8/19/24, 4:46 PM
Hm seems like it
's as a default
S
stebenz
•
8/19/24, 4:46 PM
and google sets it expicitly
S
stebenz
•
8/19/24, 4:47 PM
maybe
@livio or
@muhlemmer have an opinion here
S
stebenz
•
8/19/24, 4:50 PM
No
, I mean the IDP template for Google in ZITADEL
S
stebenz
•
8/20/24, 9:11 AM
Hm I tihnk the best thing to do would be to create a issue on github
, and then we can take care of it to make it configurable
S
stebenz
•
8/20/24, 12:53 PM
As it is already as an option in the implementation
, and should not impact other implementations if additionally configurable
, I will quickly have a look at it interally