Skip to content

Commit fc89960

Browse files
committed
Docker: Add docker config and default .dist config files to work with the stepup docker compose
1 parent bfac87e commit fc89960

File tree

4 files changed

+99
-103
lines changed

4 files changed

+99
-103
lines changed

config/legacy/parameters.yaml.dist

+24-25
Original file line numberDiff line numberDiff line change
@@ -9,38 +9,39 @@ parameters:
99
debug_toolbar: true
1010
debug_redirects: false
1111

12-
gateway_api_url: https://gw-dev.stepup.coin.surf.net/
12+
gateway_api_url: https://gateway.dev.openconext.local/
1313
gateway_api_username: ss
14-
gateway_api_password: ss
14+
gateway_api_password: sa_secret
1515

16-
middleware_credentials_username: 'FOR CI ONLY, REPLACE WITH ACTUAL VALUE'
17-
middleware_credentials_password: 'FOR CI ONLY, REPLACE WITH ACTUAL VALUE'
18-
middleware_url_command_api: 'FOR CI ONLY, REPLACE WITH ACTUAL FULL URL http://etc/'
19-
middleware_url_api: 'FOR CI ONLY, REPLACE WITH ACTUAL FULL URL http://etc/'
16+
middleware_credentials_username: ss
17+
middleware_credentials_password: sa_secret
18+
middleware_url_command_api: https://middleware.dev.openconext.local/command
19+
middleware_url_api: https://middleware.dev.openconext.local/
2020

21-
sms_originator: SURFStepup
21+
sms_originator: OpenConext
2222
sms_otp_expiry_interval: 900 # 15 minutes
2323
sms_maximum_otp_requests: 3
2424

25-
saml_sp_publickey:
26-
saml_sp_privatekey:
2725

28-
saml_metadata_publickey:
29-
saml_metadata_privatekey:
26+
saml_sp_publickey: /config/selfservice/selfservice_saml_sp.crt
27+
saml_sp_privatekey: /config/selfservice/selfservice_saml_sp.key
28+
saml_metadata_publickey: /config/selfservice/selfservice_saml_sp.crt
29+
saml_metadata_privatekey: /config/selfservice/selfservice_saml_sp.key
3030

31-
saml_remote_idp_entity_id:
32-
saml_remote_idp_sso_url:
33-
saml_remote_idp_certificate: 'FOR CI ONLY, REPLACE WITH ACTUAL VALUE'
31+
saml_remote_idp_entity_id: https://gateway.dev.openconext.local/authentication/metadata
32+
saml_remote_idp_sso_url: https://gateway.dev.openconext.local/authentication/single-sign-on
33+
saml_remote_idp_certificate: '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'
34+
3435
asset_version: 1
3536

36-
second_factor_test_idp_entity_id: ~
37-
second_factor_test_idp_sso_url: ~
38-
second_factor_test_idp_certificate: 'FOR CI ONLY, REPLACE WITH ACTUAL VALUE'
37+
second_factor_test_idp_entity_id: https://gateway.dev.openconext.local/authentication/metadata
38+
second_factor_test_idp_sso_url: https://gateway.dev.openconext.local/authentication/single-sign-on
39+
second_factor_test_idp_certificate: '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'
3940

40-
stepup_loa_loa1: https://gateway.tld/authentication/loa1
41-
stepup_loa_loa2: https://gateway.tld/authentication/loa2
42-
stepup_loa_loa3: https://gateway.tld/authentication/loa3
43-
stepup_loa_self_asserted: https://gateway.tld/authentication/loa-self-asserted
41+
stepup_loa_loa1: https://dev.openconext.local/authentication/loa1
42+
stepup_loa_loa2: https://dev.openconext.local/authentication/loa2
43+
stepup_loa_loa3: https://dev.openconext.local/authentication/loa3
44+
stepup_loa_self_asserted: 'https://dev.openconext.local/assurance/loa-self-asserted'
4445

4546
logout_redirect_url:
4647
nl_NL: https://www.surf.nl/over-surf/werkmaatschappijen/surfnet
@@ -50,13 +51,11 @@ parameters:
5051
- sms
5152
- yubikey
5253
enabled_generic_second_factors:
53-
biometric:
54-
loa: 3
5554
tiqr:
5655
loa: 3
5756

58-
irma_app_android_url: https://play.google.com/store/apps/details?id=org.irmacard.cardemu&hl=en
59-
irma_app_ios_url: https://itunes.apple.com/us/app/irma-authentication/id1294092994?mt=8
57+
tiqr_app_android_url: https://play.google.com/store/apps/details?id=org.tiqr.authenticator&hl=en
58+
tiqr_app_ios_url: https://itunes.apple.com/us/app/tiqr/id430838214?mt=8&ls=1
6059

6160
session_max_absolute_lifetime: 3600 # 1 hours * 60 minutes * 60 seconds
6261
session_max_relative_lifetime: 600 # 10 minutes * 60 seconds

0 commit comments

Comments
 (0)