anaconda-platform
client, then add a protocol mapper to the roles
client scope.
Enabling the service account
After your upgrade to Workbench 5.6+ completes:-
Open a browser and log in to your Keycloak admin panel using your existing Keycloak credentials. Your Keycloak admin panel can be found at
https://<FQDN>auth/admin
where<FQDN>
is your Workbench fully qualified domain name. -
Verify you are on the anaconda-platform realm.
-
Select Clients from the left-hand navigation, then select anaconda-platform from the list of available clients.
-
Select the Service accounts roles checkbox under Capability config, then save your changes.
- Select the new Service accounts roles tab that appears at the top of the page.
-
Click Assign role.
-
Open the filter dropdown menu and select Filter by clients.
-
Search for the
view-users
role. -
Select the role, then click Assign.
Adding the protocol mapper
-
Select Client scopes from the left-hand navigation, then select roles from the list of available client scopes.
- Select the Mappers tab.
-
Open the Add mapper dropdown menu and select By configuration.
-
Select Audience.
-
Complete the fields and set the toggle switches as indicated:
- Name - my-audience
- Included Client Audience - anaconda-platform
- Add to ID token -
ON
- Add to access token -
ON
-
Click Save.