Authentication [operator.openshift.io/v1]
Esc
Start typing to search...
On this page

Authentication [operator.openshift.io/v1]

Description

Authentication provides information to configure an operator to manage authentication.

Compatibility level 1: Stable within a major release for a minimum of 12 months or 3 minor releases (whichever is longer).

Type
`object`
Required
  • spec

Specification

PropertyTypeDescription
apiVersionstringAPIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources
kindstringKind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds
metadataObjectMetaStandard object’s metadata. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#metadata
specobject
statusobject

.spec

Description

Type
`object`
PropertyTypeDescription
logLevelstringlogLevel is an intent based logging for an overall component. It does not give fine grained control, but it is a simple way to manage coarse grained logging choices that operators have to interpret for their operands.
Valid values are: "Normal", "Debug", "Trace", "TraceAll". Defaults to "Normal".
managementStatestringmanagementState indicates whether and how the operator should manage the component
observedConfig``observedConfig holds a sparse config that controller has observed from the cluster state. It exists in spec because it is an input to the level for the operator
operatorLogLevelstringoperatorLogLevel is an intent based logging for the operator itself. It does not give fine grained control, but it is a simple way to manage coarse grained logging choices that operators have to interpret for themselves.
Valid values are: "Normal", "Debug", "Trace", "TraceAll". Defaults to "Normal".
unsupportedConfigOverrides``unsupportedConfigOverrides overrides the final configuration that was computed by the operator. Red Hat does not support the use of this field. Misuse of this field could lead to unexpected behavior or conflict with other configuration options. Seek guidance from the Red Hat support before using this field. Use of this property blocks cluster upgrades, it must be removed before upgrading your cluster.

.status

Description

Type
`object`
PropertyTypeDescription
conditionsarrayconditions is a list of conditions and their status
conditions[]objectOperatorCondition is just the standard condition fields.
generationsarraygenerations are used to determine when an item needs to be reconciled or has changed in a way that needs a reaction.
generations[]objectGenerationStatus keeps track of the generation for a given resource so that decisions about forced updates can be made.
latestAvailableRevisionintegerlatestAvailableRevision is the deploymentID of the most recent deployment
oauthAPIServerobjectoauthAPIServer holds status specific only to oauth-apiserver
observedGenerationintegerobservedGeneration is the last generation change you’ve dealt with
readyReplicasintegerreadyReplicas indicates how many replicas are ready and at the desired state
versionstringversion is the level this availability applies to

.status.conditions

Description

conditions is a list of conditions and their status

Type
`array`

.status.conditions[]

Description

OperatorCondition is just the standard condition fields.

Type
`object`
Required
  • lastTransitionTime
  • status
  • type
PropertyTypeDescription
lastTransitionTimestringlastTransitionTime is the last time the condition transitioned from one status to another. This should be when the underlying condition changed. If that is not known, then using the time when the API field changed is acceptable.
messagestring
reasonstring
statusstringstatus of the condition, one of True, False, Unknown.
typestringtype of condition in CamelCase or in foo.example.com/CamelCase.

.status.generations

Description

generations are used to determine when an item needs to be reconciled or has changed in a way that needs a reaction.

Type
`array`

.status.generations[]

Description

GenerationStatus keeps track of the generation for a given resource so that decisions about forced updates can be made.

Type
`object`
Required
  • group
  • name
  • namespace
  • resource
PropertyTypeDescription
groupstringgroup is the group of the thing you’re tracking
hashstringhash is an optional field set for resources without generation that are content sensitive like secrets and configmaps
lastGenerationintegerlastGeneration is the last generation of the workload controller involved
namestringname is the name of the thing you’re tracking
namespacestringnamespace is where the thing you’re tracking is
resourcestringresource is the resource type of the thing you’re tracking

.status.oauthAPIServer

Description

oauthAPIServer holds status specific only to oauth-apiserver

Type
`object`
PropertyTypeDescription
latestAvailableRevisionintegerlatestAvailableRevision is the latest revision used as suffix of revisioned secrets like encryption-config. A new revision causes a new deployment of pods.

API endpoints

The following API endpoints are available:

  • /apis/operator.openshift.io/v1/authentications
    • DELETE: delete collection of Authentication
    • GET: list objects of kind Authentication
    • POST: create an Authentication
  • /apis/operator.openshift.io/v1/authentications/{name}
    • DELETE: delete an Authentication
    • GET: read the specified Authentication
    • PATCH: partially update the specified Authentication
    • PUT: replace the specified Authentication
  • /apis/operator.openshift.io/v1/authentications/{name}/status
    • GET: read status of the specified Authentication
    • PATCH: partially update status of the specified Authentication
    • PUT: replace status of the specified Authentication

/apis/operator.openshift.io/v1/authentications

HTTP method
`DELETE`
Description
delete collection of Authentication

HTTP responses

HTTP codeReponse body
200 - OKStatus schema
401 - UnauthorizedEmpty
HTTP method
`GET`
Description
list objects of kind Authentication

HTTP responses

HTTP codeReponse body
200 - OKAuthenticationList schema
401 - UnauthorizedEmpty
HTTP method
`POST`
Description
create an Authentication

Query parameters

ParameterTypeDescription
dryRunstringWhen present, indicates that modifications should not be persisted. An invalid or unrecognized dryRun directive will result in an error response and no further processing of the request. Valid values are: - All: all dry run stages will be processed
fieldValidationstringfieldValidation instructs the server on how to handle objects in the request (POST/PUT/PATCH) containing unknown or duplicate fields. Valid values are: - Ignore: This will ignore any unknown fields that are silently dropped from the object, and will ignore all but the last duplicate field that the decoder encounters. This is the default behavior prior to v1.23. - Warn: This will send a warning via the standard warning response header for each unknown field that is dropped from the object, and for each duplicate field that is encountered. The request will still succeed if there are no other errors, and will only persist the last of any duplicate fields. This is the default in v1.23+ - Strict: This will fail the request with a BadRequest error if any unknown fields would be dropped from the object, or if any duplicate fields are present. The error returned from the server will contain all unknown and duplicate fields encountered.

Body parameters

ParameterTypeDescription
bodyAuthentication schema

HTTP responses

HTTP codeReponse body
200 - OKAuthentication schema
201 - CreatedAuthentication schema
202 - AcceptedAuthentication schema
401 - UnauthorizedEmpty

/apis/operator.openshift.io/v1/authentications/{name}

Global path parameters

ParameterTypeDescription
namestringname of the Authentication
HTTP method
`DELETE`
Description
delete an Authentication

Query parameters

ParameterTypeDescription
dryRunstringWhen present, indicates that modifications should not be persisted. An invalid or unrecognized dryRun directive will result in an error response and no further processing of the request. Valid values are: - All: all dry run stages will be processed

HTTP responses

HTTP codeReponse body
200 - OKStatus schema
202 - AcceptedStatus schema
401 - UnauthorizedEmpty
HTTP method
`GET`
Description
read the specified Authentication

HTTP responses

HTTP codeReponse body
200 - OKAuthentication schema
401 - UnauthorizedEmpty
HTTP method
`PATCH`
Description
partially update the specified Authentication

Query parameters

ParameterTypeDescription
dryRunstringWhen present, indicates that modifications should not be persisted. An invalid or unrecognized dryRun directive will result in an error response and no further processing of the request. Valid values are: - All: all dry run stages will be processed
fieldValidationstringfieldValidation instructs the server on how to handle objects in the request (POST/PUT/PATCH) containing unknown or duplicate fields. Valid values are: - Ignore: This will ignore any unknown fields that are silently dropped from the object, and will ignore all but the last duplicate field that the decoder encounters. This is the default behavior prior to v1.23. - Warn: This will send a warning via the standard warning response header for each unknown field that is dropped from the object, and for each duplicate field that is encountered. The request will still succeed if there are no other errors, and will only persist the last of any duplicate fields. This is the default in v1.23+ - Strict: This will fail the request with a BadRequest error if any unknown fields would be dropped from the object, or if any duplicate fields are present. The error returned from the server will contain all unknown and duplicate fields encountered.

HTTP responses

HTTP codeReponse body
200 - OKAuthentication schema
401 - UnauthorizedEmpty
HTTP method
`PUT`
Description
replace the specified Authentication

Query parameters

ParameterTypeDescription
dryRunstringWhen present, indicates that modifications should not be persisted. An invalid or unrecognized dryRun directive will result in an error response and no further processing of the request. Valid values are: - All: all dry run stages will be processed
fieldValidationstringfieldValidation instructs the server on how to handle objects in the request (POST/PUT/PATCH) containing unknown or duplicate fields. Valid values are: - Ignore: This will ignore any unknown fields that are silently dropped from the object, and will ignore all but the last duplicate field that the decoder encounters. This is the default behavior prior to v1.23. - Warn: This will send a warning via the standard warning response header for each unknown field that is dropped from the object, and for each duplicate field that is encountered. The request will still succeed if there are no other errors, and will only persist the last of any duplicate fields. This is the default in v1.23+ - Strict: This will fail the request with a BadRequest error if any unknown fields would be dropped from the object, or if any duplicate fields are present. The error returned from the server will contain all unknown and duplicate fields encountered.

Body parameters

ParameterTypeDescription
bodyAuthentication schema

HTTP responses

HTTP codeReponse body
200 - OKAuthentication schema
201 - CreatedAuthentication schema
401 - UnauthorizedEmpty

/apis/operator.openshift.io/v1/authentications/{name}/status

Global path parameters

ParameterTypeDescription
namestringname of the Authentication
HTTP method
`GET`
Description
read status of the specified Authentication

HTTP responses

HTTP codeReponse body
200 - OKAuthentication schema
401 - UnauthorizedEmpty
HTTP method
`PATCH`
Description
partially update status of the specified Authentication

Query parameters

ParameterTypeDescription
dryRunstringWhen present, indicates that modifications should not be persisted. An invalid or unrecognized dryRun directive will result in an error response and no further processing of the request. Valid values are: - All: all dry run stages will be processed
fieldValidationstringfieldValidation instructs the server on how to handle objects in the request (POST/PUT/PATCH) containing unknown or duplicate fields. Valid values are: - Ignore: This will ignore any unknown fields that are silently dropped from the object, and will ignore all but the last duplicate field that the decoder encounters. This is the default behavior prior to v1.23. - Warn: This will send a warning via the standard warning response header for each unknown field that is dropped from the object, and for each duplicate field that is encountered. The request will still succeed if there are no other errors, and will only persist the last of any duplicate fields. This is the default in v1.23+ - Strict: This will fail the request with a BadRequest error if any unknown fields would be dropped from the object, or if any duplicate fields are present. The error returned from the server will contain all unknown and duplicate fields encountered.

HTTP responses

HTTP codeReponse body
200 - OKAuthentication schema
401 - UnauthorizedEmpty
HTTP method
`PUT`
Description
replace status of the specified Authentication

Query parameters

ParameterTypeDescription
dryRunstringWhen present, indicates that modifications should not be persisted. An invalid or unrecognized dryRun directive will result in an error response and no further processing of the request. Valid values are: - All: all dry run stages will be processed
fieldValidationstringfieldValidation instructs the server on how to handle objects in the request (POST/PUT/PATCH) containing unknown or duplicate fields. Valid values are: - Ignore: This will ignore any unknown fields that are silently dropped from the object, and will ignore all but the last duplicate field that the decoder encounters. This is the default behavior prior to v1.23. - Warn: This will send a warning via the standard warning response header for each unknown field that is dropped from the object, and for each duplicate field that is encountered. The request will still succeed if there are no other errors, and will only persist the last of any duplicate fields. This is the default in v1.23+ - Strict: This will fail the request with a BadRequest error if any unknown fields would be dropped from the object, or if any duplicate fields are present. The error returned from the server will contain all unknown and duplicate fields encountered.

Body parameters

ParameterTypeDescription
bodyAuthentication schema

HTTP responses

HTTP codeReponse body
200 - OKAuthentication schema
201 - CreatedAuthentication schema
401 - UnauthorizedEmpty