k3s/pkg/kubeapiserver/options
Kubernetes Submit Queue d970eb8f94 Merge pull request #50875 from ericchiang/oidc-claims-prefix
Automatic merge from submit-queue (batch tested with PRs 50579, 50875, 51797, 51807, 51803)

oidc auth: make the OIDC claims prefix configurable

Add the following flags to control the prefixing of usernames and
groups authenticated using OpenID Connect tokens.

	--oidc-username-prefix
	--oidc-groups-prefix

```release-note
The OpenID Connect authenticator can now use a custom prefix, or omit the default prefix, for username and groups claims through the --oidc-username-prefix and --oidc-groups-prefix flags. For example, the authenticator can map a user with the username "jane" to "google:jane" by supplying the "google:" username prefix.
```

Closes https://github.com/kubernetes/kubernetes/issues/50408
Ref https://github.com/kubernetes/kubernetes/issues/31380

cc @grillz @kubernetes/sig-auth-pr-reviews @thomastaylor312 @gtaylor
2017-09-03 08:46:23 -07:00
..
BUILD Use buildozer to delete licenses() rules except under third_party/ 2017-08-11 09:32:39 -07:00
api_enablement.go move --runtime-config to kubeapiserver 2017-02-07 13:43:13 -05:00
authentication.go Merge pull request #50875 from ericchiang/oidc-claims-prefix 2017-09-03 08:46:23 -07:00
authorization.go Delete "hard-coded" default value in flags usage. 2017-04-07 11:21:37 +08:00
cloudprovider.go Set external hostname in local-up-cluster 2017-07-24 07:58:46 -04:00
serving.go Delete "hard-coded" default value in flags usage. 2017-04-07 11:21:37 +08:00
storage_versions.go streamline etcd options for aggregated api server 2017-02-08 09:07:47 -05:00
storage_versions_test.go remove unneeded storage options 2017-01-31 13:44:39 -05:00