{"repo":"stakater/ProxyInjector","free":true,"listed":false,"github":"https://github.com/stakater/ProxyInjector","clone":"git clone https://github.com/stakater/ProxyInjector.git","description":"A Kubernetes controller to inject an authentication proxy container to relevant pods - [✩Star] if you're using it!","language":"Go","stars":86,"topics":["proxy","k8s","authentication","openshift","keycloak","kubernetes","stakater"],"license":null,"category":"deployment-docker-iac","readme_excerpt":"Proxy Injector A Kubernetes controller to inject an authentication proxy container to relevant pods Problem Statement We want to automatically inject an authentication proxy container in a pod, for any deployment that requires to connect to our SSO provider, instead of manually adding a sidecar container with each deployment Solution This controller will continuously watch deployments in specific or all namespaces, and automatically add a sidecar container for the authentication proxy. Configuration for the proxy is managed through annotations of the respective deployment or with ConfigMap of the ProxyInjector. Supported proxies For now the ProxyInjector only supports Keycloak Gatekeeper as the authentication proxy, to work with Keycloak Server Usage The following quickstart let's you set up ProxyInjector: 1. Add configuration to the ProxyInjector The following arguments can either be added to the proxy injector config.yaml in the ConfigMap/Secret for centralized configuration, or as annotations on the individual target deployments with a authproxy.stakater.com/ prefix. In case of both, the deployment annotation values will override the central configuration. Key Description ------------------ --------------------------------------------------------------------------- listen the interface address and port the proxy should be listening on upstream-url url for the upstream endpoint you wish to proxy resources list of resources to proxy uri, methods, roles client-id client id us","default_branch":null,"files":null,"tree":[],"storefront":"/r/stakater","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/stakater/ProxyInjector/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}