Description of problem: This is a permanent API that needs to line up with the route.subdomain changes that are coming. We can never change this URL later as it breaks OAuth callbacks and OAuth issuers can never change. Version-Release number of selected component (if applicable): How reproducible: Steps to Reproduce: 1. 2. 3. Actual results: Expected results: Additional info:
If the fix fails to land for beta5, a beta5 to release upgrade that is using OAuth IDPs will break as the redirect URL will change. The upgrade itself will be successful and all infra will keep working - users will not be able to log in afterwards. The fix will be to update the redirect URL in the IDP itself. This should not be considered a beta5 blocker. This is a release blocker.
https://github.com/openshift/cluster-authentication-operator/pull/126
vefified.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2019:0758