feat: deployment flag to auto handle changed oidc providers (#26419)

An opt-out flag exists as an escape hatch

closes https://linear.app/codercom/issue/PLAT-343/automatically-reset-user-link-for-affected-users-when-idp-provider
This commit is contained in:
Steven Masley
2026-06-16 13:26:04 -07:00
committed by GitHub
parent b6fcb9a30a
commit 0e45ded0ed
9 changed files with 286 additions and 23 deletions
+1
View File
@@ -424,6 +424,7 @@ curl -X GET http://coder-server:8080/api/v2/deployment/config \
"oidc": {
"allow_signups": true,
"auth_url_params": {},
"auto_repair_links": true,
"client_cert_file": "string",
"client_id": "string",
"client_key_file": "string",
+4
View File
@@ -5727,6 +5727,7 @@ CreateWorkspaceRequest provides options for creating a new workspace. Only one o
"oidc": {
"allow_signups": true,
"auth_url_params": {},
"auto_repair_links": true,
"client_cert_file": "string",
"client_id": "string",
"client_key_file": "string",
@@ -6328,6 +6329,7 @@ CreateWorkspaceRequest provides options for creating a new workspace. Only one o
"oidc": {
"allow_signups": true,
"auth_url_params": {},
"auto_repair_links": true,
"client_cert_file": "string",
"client_id": "string",
"client_key_file": "string",
@@ -8808,6 +8810,7 @@ Only certain features set these fields: - FeatureManagedAgentLimit|
{
"allow_signups": true,
"auth_url_params": {},
"auto_repair_links": true,
"client_cert_file": "string",
"client_id": "string",
"client_key_file": "string",
@@ -8878,6 +8881,7 @@ Only certain features set these fields: - FeatureManagedAgentLimit|
|--------------------------------------|----------------------------------|----------|--------------|--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| `allow_signups` | boolean | false | | |
| `auth_url_params` | object | false | | |
| `auto_repair_links` | boolean | false | | |
| `client_cert_file` | string | false | | |
| `client_id` | string | false | | |
| `client_key_file` | string | false | | Client key file & ClientCertFile are used in place of ClientSecret for PKI auth. |