{"repo":"Parkour-Vienna/distrust","free":true,"listed":false,"github":"https://github.com/Parkour-Vienna/distrust","clone":"git clone https://github.com/Parkour-Vienna/distrust.git","description":"Use discourse as an OIDC (OAuth 2.0) provider","language":"Go","stars":22,"topics":["openid-connect","oauth2","discourse"],"license":"BSD-3-Clause","category":"auth-billing-email","readme_excerpt":"distrust --- Use discourse as an OIDC (OAuth 2.0) provider. Installation To run distrust, copy the distrust.example.yml file to distrust.yml and customize it to your liking. Afterwards, run the binary or container image. You can also use a container engine like podman or docker to run distrust Configuration Configuring Discourse To start using discourse as an OIDC provider, you need to configure your discourse instance. The following site settings need to be set: - enable discourse connect provider - discourse connect provider secrets - Here you need to add the domain of the distrust server and choose a secure secret This configuration must then be entered in the distrust.yml file Configuring the OIDC provider The OIDC provider is based on ory/fosite and needs two configuration values to work. The first one is a 32-byte secret. It must be exactly 32 bytes long. The other parameter is the private key used for signing the tokens. If you need a fresh RSA private key, you can run distrust genkey to generate one. Both values can be left empty, however this will invalidate all tokens on a server restart Configuring Clients The last step is the configuration of clients. Here you need to specify a name, a client secret as well as the allowed redirect URIs. As of this point, the redirect URIs do not support wildcards The following example configures a client called test with the secret foobar which is authorized to redirect to the OpenID Connect test page If you do not want to provide","default_branch":null,"files":null,"tree":[],"storefront":"/r/Parkour-Vienna","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Parkour-Vienna/distrust/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}