...
B. In the environment values.yaml file -
Enable the
kfuse-saml
flag to true in the “global“ section of the environment file.Set the
dnsName
tag to the customer’s kloudfuse domain name.
Code Block |
---|
global:
dnsName: <your kloudfuse domain name>
kfuse-saml:
enabled: true |
Set the flag
saml-provider-name
to the customer’s SAML provider name in kfuse-auth config.Set the flag
existingSecret: "kfuse-auth-saml"
in the config section of oauth2-proxy inkfuse-auth
section.For example, for Okta as the SAML provider -
Code Block |
---|
kfuse-auth: oauth2-proxy: config: saml-provider-name: "Okta" |
Ensure that flag “existingSecret” exists and is non-empty.
...
|
...
|
...
existingSecret: "kfuse-auth-saml" |
Now, do the general upgrade using the environment’s file.
...
Exec into kfuse-configdb shell.
Code Block k exec -it kfuse-configdb-0 -- bash
psql into the postgres
Code Block psql -U postgres
It will ask for password for kfuse-configdb. Provide that.
Check all tables and if samldb exist
Code Block \l
Delete and create the table samldb
Code Block drop database samldb; createdb samldb;