mirror of
https://github.com/vmware-tanzu/pinniped.git
synced 2026-01-05 04:56:11 +00:00
Synchronize the OIDCProvider secrets cache
Signed-off-by: Andrew Keesler <akeesler@vmware.com>
This commit is contained in:
@@ -158,8 +158,7 @@ func startControllers(
|
||||
rand.Reader,
|
||||
func(parent *configv1alpha1.OIDCProvider, child *corev1.Secret) {
|
||||
plog.Debug("setting hmac secret", "issuer", parent.Spec.Issuer)
|
||||
secretCache.GetOIDCProviderCacheFor(parent.Spec.Issuer).
|
||||
SetTokenHMACKey(child.Data[symmetricsecrethelper.SecretDataKey])
|
||||
secretCache.SetTokenHMACKey(parent.Spec.Issuer, child.Data[symmetricsecrethelper.SecretDataKey])
|
||||
},
|
||||
),
|
||||
kubeClient,
|
||||
@@ -177,8 +176,7 @@ func startControllers(
|
||||
rand.Reader,
|
||||
func(parent *configv1alpha1.OIDCProvider, child *corev1.Secret) {
|
||||
plog.Debug("setting state signature key", "issuer", parent.Spec.Issuer)
|
||||
secretCache.GetOIDCProviderCacheFor(parent.Spec.Issuer).
|
||||
SetStateEncoderHashKey(child.Data[symmetricsecrethelper.SecretDataKey])
|
||||
secretCache.SetStateEncoderHashKey(parent.Spec.Issuer, child.Data[symmetricsecrethelper.SecretDataKey])
|
||||
},
|
||||
),
|
||||
kubeClient,
|
||||
@@ -196,8 +194,7 @@ func startControllers(
|
||||
rand.Reader,
|
||||
func(parent *configv1alpha1.OIDCProvider, child *corev1.Secret) {
|
||||
plog.Debug("setting state encryption key", "issuer", parent.Spec.Issuer)
|
||||
secretCache.GetOIDCProviderCacheFor(parent.Spec.Issuer).
|
||||
SetStateEncoderHashKey(child.Data[symmetricsecrethelper.SecretDataKey])
|
||||
secretCache.SetStateEncoderBlockKey(parent.Spec.Issuer, child.Data[symmetricsecrethelper.SecretDataKey])
|
||||
},
|
||||
),
|
||||
kubeClient,
|
||||
|
||||
Reference in New Issue
Block a user