Skip to content

SSH OIDC custom principal #2019

Answered by tashian
tsoos99dev asked this question in Q&A
Oct 3, 2024 · 1 comments · 1 reply
Discussion options

You must be logged in to vote

Yes, you can definitely use a webhook for creating a different mapping between the OIDC token values and some other values, from an external source, for example.

An alternative would be to use a custom claim in the OIDC token, if you are able to. With this approach, you'd update the SSH certificate template for the provisioner, mapping the principal to the custom claim.

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@tsoos99dev
Comment options

Answer selected by tsoos99dev
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants