|
@@ -69,7 +69,7 @@ resource "vault_jwt_auth_backend_role" "okta_oidc" {
|
|
|
token_policies = each.value.token_policies
|
|
|
user_claim = "email"
|
|
|
role_type = "oidc"
|
|
|
- allowed_redirect_uris = ["https://vault.pvt.xdrtest.accenturefederalcyber.com/ui/vault/auth/oidc/oidc/callback" ]
|
|
|
+ allowed_redirect_uris = ["https://vault.${var.dns_info["private"]["zone"]}/ui/vault/auth/oidc/oidc/callback" ]
|
|
|
oidc_scopes = [ "profile", "email", "groups" ]
|
|
|
bound_claims = { groups = join(",", each.value.bound_groups) }
|
|
|
verbose_oidc_logging = false
|