diff --git a/infra/values/upc-dev/keycloak-values.yaml b/infra/values/upc-dev/keycloak-values.yaml index b99438f..e31c188 100644 --- a/infra/values/upc-dev/keycloak-values.yaml +++ b/infra/values/upc-dev/keycloak-values.yaml @@ -14,6 +14,21 @@ keycloakConfigCli: "displayName": "Forte Entra", "providerId": "microsoft", "enabled": true, + "trustEmail": true, + "firstBrokerLoginFlowAlias": "first broker login", + "config": { + "clientId": "7995d2b5-b798-4caf-8da6-b00b78bb34d7", + "clientSecret": "$(env:MS_IDP_CLIENT_SECRET)", + "defaultScope": "openid email profile", + "tenantId": "063afd9e-5fcb-48d2-a769-ca31b0f5b443", + "syncMode": "IMPORT" + } + }, + { + "alias": "forte-entra-graph", + "displayName": "Forte Entra (Graph)", + "providerId": "microsoft", + "enabled": true, "storeToken": true, "trustEmail": true, "firstBrokerLoginFlowAlias": "first broker login", @@ -36,6 +51,16 @@ keycloakConfigCli: "attribute": "emailVerified", "attribute.value": "true" } + }, + { + "name": "forte-entra-graph-email", + "identityProviderAlias": "forte-entra-graph", + "identityProviderMapper": "hardcoded-attribute-idp-mapper", + "config": { + "syncMode": "INHERIT", + "attribute": "emailVerified", + "attribute.value": "true" + } } ], "roles": {