htpasswd auth problems

51 views
Skip to first unread message

Just Marvin

unread,
May 16, 2019, 10:36:00 PM5/16/19
to OpenShift 4 Developer Preview
Hi,

    I'm following the instructions here: https://docs.openshift.com/container-platform/4.1/authentication/identity_providers/configuring-htpasswd-identity-provider.html . After I get done with this, oc login works for the id I defined in the htpasswd file. As well as kubeadmin. However, on the openshift console, I am only able to login in with kubeadmin. Is there an extra step to enable console logins?

Regards,
Marvin

Just Marvin

unread,
May 17, 2019, 3:42:30 PM5/17/19
to OpenShift 4 Developer Preview
Hi,

    Got this working. It turns out that I didn't really understand the console screen. There were two fields on it - which my instinct told me were userid and password fields. but in reality, they were two different choices of how to log in. I was forever clicking on the first link - thinking it was the userid field, when it really was the link to only allow a kubeadmin login. The other field / link let me log into the system via the new identity provider.

    I think the usability of this page can be improved by making it not look like an input field. Let only the link be rendered. Just my $0.02.

Regards,
Marvin

Wolfgang Kulhanek

unread,
May 17, 2019, 3:43:33 PM5/17/19
to Just Marvin, OpenShift 4 Developer Preview
Once you have proper authentication you can delete kubeadmin (oc delete secret kubeadmin -n kube-system). Of course I’d create a user in htpasswd first and grant it cluster-admin….. (oc adm policy add-cluster-role-to-user cluster-admin >your admin<)
Wolfgang Kulhanek




--
You received this message because you are subscribed to the Google Groups "OpenShift 4 Developer Preview" group.
To unsubscribe from this group and stop receiving emails from it, send an email to openshift-4-dev-p...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/openshift-4-dev-preview/e039c5db-d104-41b6-8501-3031a7f58368%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply all
Reply to author
Forward
0 new messages