osp-rights

Overview

The rights module has the role of checking if a user can access a resource based on its groups membership.

See the rights feature for more information about the rights behavior.

List of configuration files

Filename

Short description

Format

Documentation

module.service

Each service is described in its own file and then assembled

yml

See the Swarm administration or Official documentation

module.rights

Defines the link between the internal groups and the group defined on Keycloak

json

module.rights

access.rights

Defines the access for a sub-tree based on the group membership

json

access.rights

Environment Variables

All modules env variables

Variable Name

Default Value

Usage

PROMETHEUS_PORT

9100

The internal port used for Openmetrics exposition.

DISPATCHER_HOST

modules_configuration-dispatcher_main

The hostname on which the modules can fetch the configuration.

DISPATCHER_PORT

10000

The port used by the module to listen for configuration request.

USE_LEGACY_RESTART

Not set

When this flag is enabled, the container will terminate itself whenever a restart is needed (for example, after a configuration change). This is the legacy restart (before version 2.1.0). Otherwise, the system will simply restart the process running inside the container.

CUSTOM_JVM_OPTIONS

Not set

Allow to inject JVM options. See Configuration changes for more information.

ALLOW_VERSION_MISMATCH

Not set

Allow to disable the version check when a new configuration is published to a module. By default, a module will not be restarted if its configuration does not match its version.

Dedicated variables

None