Skip to search

KeycloakRealmImport

k8s.keycloak.org / v2beta1

apiVersion: k8s.keycloak.org/v2beta1 kind: KeycloakRealmImport metadata: name: example
View raw schema
spec object
keycloakCRName string required
The name of the Keycloak CR to reference, in the same namespace.
labels object
Optionally set to add additional labels to the Job created for the import.
placeholders object
Optionally set to replace ENV variable placeholders in the realm import.
realm object required
The RealmRepresentation to import into Keycloak.
accessCodeLifespan integer
accessCodeLifespanLogin integer
accessCodeLifespanUserAction integer
accessTokenLifespan integer
accessTokenLifespanForImplicitFlow integer
accountTheme string
actionTokenGeneratedByAdminLifespan integer
actionTokenGeneratedByUserLifespan integer
adminEventsDetailsEnabled boolean
adminEventsEnabled boolean
adminPermissionsClient object
access object
adminUrl string
alwaysDisplayInConsole boolean
attributes object
authenticationFlowBindingOverrides object
authorizationServicesEnabled boolean
authorizationSettings object
allowRemoteResourceManagement boolean
authorizationSchema object
resourceTypes object
clientId string
decisionStrategy string
enum: AFFIRMATIVE, CONSENSUS, UNANIMOUS
id string
name string
policies []object
config object
decisionStrategy string
enum: AFFIRMATIVE, CONSENSUS, UNANIMOUS
description string
id string
logic string
enum: NEGATIVE, POSITIVE
name string
owner string
policies []string
resourceType string
resources []string
resourcesData []object
_id string
attributes object
displayName string
icon_uri string
name string
owner object
id string
name string
ownerManagedAccess boolean
scopes []object
displayName string
iconUri string
id string
name string
type string
uris []string
scopes []string
scopesData []object
displayName string
iconUri string
id string
name string
type string
policyEnforcementMode string
enum: DISABLED, ENFORCING, PERMISSIVE
resources []object
_id string
attributes object
displayName string
icon_uri string
name string
owner object
id string
name string
ownerManagedAccess boolean
scopes []object
displayName string
iconUri string
id string
name string
type string
uris []string
scopes []object
displayName string
iconUri string
id string
name string
baseUrl string
bearerOnly boolean
clientAuthenticatorType string
clientId string
clientTemplate string
consentRequired boolean
defaultClientScopes []string
defaultRoles []string
description string
directAccessGrantsEnabled boolean
directGrantsOnly boolean
enabled boolean
frontchannelLogout boolean
fullScopeAllowed boolean
id string
implicitFlowEnabled boolean
name string
nodeReRegistrationTimeout integer
notBefore integer
optionalClientScopes []string
origin string
protocol string
protocolMappers []object
config object
consentRequired boolean
consentText string
id string
name string
protocol string
protocolMapper string
publicClient boolean
redirectUris []string
registeredNodes object
registrationAccessToken string
rootUrl string
secret string
serviceAccountsEnabled boolean
standardFlowEnabled boolean
surrogateAuthRequired boolean
type string
useTemplateConfig boolean
useTemplateMappers boolean
useTemplateScope boolean
webOrigins []string
adminPermissionsEnabled boolean
adminTheme string
applicationScopeMappings object
applications []object
access object
adminUrl string
alwaysDisplayInConsole boolean
attributes object
authenticationFlowBindingOverrides object
authorizationServicesEnabled boolean
authorizationSettings object
allowRemoteResourceManagement boolean
authorizationSchema object
resourceTypes object
clientId string
decisionStrategy string
enum: AFFIRMATIVE, CONSENSUS, UNANIMOUS
id string
name string
policies []object
config object
decisionStrategy string
enum: AFFIRMATIVE, CONSENSUS, UNANIMOUS
description string
id string
logic string
enum: NEGATIVE, POSITIVE
name string
owner string
policies []string
resourceType string
resources []string
resourcesData []object
_id string
attributes object
displayName string
icon_uri string
name string
owner object
id string
name string
ownerManagedAccess boolean
scopes []object
displayName string
iconUri string
id string
name string
type string
uris []string
scopes []string
scopesData []object
displayName string
iconUri string
id string
name string
type string
policyEnforcementMode string
enum: DISABLED, ENFORCING, PERMISSIVE
resources []object
_id string
attributes object
displayName string
icon_uri string
name string
owner object
id string
name string
ownerManagedAccess boolean
scopes []object
displayName string
iconUri string
id string
name string
type string
uris []string
scopes []object
displayName string
iconUri string
id string
name string
baseUrl string
bearerOnly boolean
claims object
address boolean
email boolean
gender boolean
locale boolean
name boolean
phone boolean
picture boolean
profile boolean
username boolean
website boolean
clientAuthenticatorType string
clientId string
clientTemplate string
consentRequired boolean
defaultClientScopes []string
defaultRoles []string
description string
directAccessGrantsEnabled boolean
directGrantsOnly boolean
enabled boolean
frontchannelLogout boolean
fullScopeAllowed boolean
id string
implicitFlowEnabled boolean
name string
nodeReRegistrationTimeout integer
notBefore integer
optionalClientScopes []string
origin string
protocol string
protocolMappers []object
config object
consentRequired boolean
consentText string
id string
name string
protocol string
protocolMapper string
publicClient boolean
redirectUris []string
registeredNodes object
registrationAccessToken string
rootUrl string
secret string
serviceAccountsEnabled boolean
standardFlowEnabled boolean
surrogateAuthRequired boolean
type string
useTemplateConfig boolean
useTemplateMappers boolean
useTemplateScope boolean
webOrigins []string
attributes object
authenticationFlows []object
alias string
authenticationExecutions []object
authenticator string
authenticatorConfig string
authenticatorFlow boolean
autheticatorFlow boolean
flowAlias string
priority integer
requirement string
userSetupAllowed boolean
builtIn boolean
description string
id string
providerId string
topLevel boolean
authenticatorConfig []object
alias string
config object
id string
browserFlow string
browserSecurityHeaders object
bruteForceProtected boolean
bruteForceStrategy string
enum: LINEAR, MULTIPLE
certificate string
clientAuthenticationFlow string
clientOfflineSessionIdleTimeout integer
clientOfflineSessionMaxLifespan integer
clientPolicies object
clientProfiles object
clientScopeMappings object
clientScopes []object
attributes object
description string
id string
name string
protocol string
protocolMappers []object
config object
consentRequired boolean
consentText string
id string
name string
protocol string
protocolMapper string
clientSessionIdleTimeout integer
clientSessionMaxLifespan integer
clientTemplates []object
attributes object
bearerOnly boolean
consentRequired boolean
description string
directAccessGrantsEnabled boolean
frontchannelLogout boolean
fullScopeAllowed boolean
id string
implicitFlowEnabled boolean
name string
protocol string
protocolMappers []object
config object
consentRequired boolean
consentText string
id string
name string
protocol string
protocolMapper string
publicClient boolean
serviceAccountsEnabled boolean
standardFlowEnabled boolean
clients []object
access object
adminUrl string
alwaysDisplayInConsole boolean
attributes object
authenticationFlowBindingOverrides object
authorizationServicesEnabled boolean
authorizationSettings object
allowRemoteResourceManagement boolean
authorizationSchema object
resourceTypes object
clientId string
decisionStrategy string
enum: AFFIRMATIVE, CONSENSUS, UNANIMOUS
id string
name string
policies []object
config object
decisionStrategy string
enum: AFFIRMATIVE, CONSENSUS, UNANIMOUS
description string
id string
logic string
enum: NEGATIVE, POSITIVE
name string
owner string
policies []string
resourceType string
resources []string
resourcesData []object
_id string
attributes object
displayName string
icon_uri string
name string
owner object
id string
name string
ownerManagedAccess boolean
scopes []object
displayName string
iconUri string
id string
name string
type string
uris []string
scopes []string
scopesData []object
displayName string
iconUri string
id string
name string
type string
policyEnforcementMode string
enum: DISABLED, ENFORCING, PERMISSIVE
resources []object
_id string
attributes object
displayName string
icon_uri string
name string
owner object
id string
name string
ownerManagedAccess boolean
scopes []object
displayName string
iconUri string
id string
name string
type string
uris []string
scopes []object
displayName string
iconUri string
id string
name string
baseUrl string
bearerOnly boolean
clientAuthenticatorType string
clientId string
clientTemplate string
consentRequired boolean
defaultClientScopes []string
defaultRoles []string
description string
directAccessGrantsEnabled boolean
directGrantsOnly boolean
enabled boolean
frontchannelLogout boolean
fullScopeAllowed boolean
id string
implicitFlowEnabled boolean
name string
nodeReRegistrationTimeout integer
notBefore integer
optionalClientScopes []string
origin string
protocol string
protocolMappers []object
config object
consentRequired boolean
consentText string
id string
name string
protocol string
protocolMapper string
publicClient boolean
redirectUris []string
registeredNodes object
registrationAccessToken string
rootUrl string
secret string
serviceAccountsEnabled boolean
standardFlowEnabled boolean
surrogateAuthRequired boolean
type string
useTemplateConfig boolean
useTemplateMappers boolean
useTemplateScope boolean
webOrigins []string
codeSecret string
components object
defaultDefaultClientScopes []string
defaultGroups []string
defaultLocale string
defaultOptionalClientScopes []string
defaultRole object
attributes object
clientRole boolean
composite boolean
composites object
application object
client object
realm []string
containerId string
description string
id string
name string
scopeParamRequired boolean
defaultRoles []string
defaultSignatureAlgorithm string
directGrantFlow string
displayName string
displayNameHtml string
dockerAuthenticationFlow string
duplicateEmailsAllowed boolean
editUsernameAllowed boolean
emailTheme string
enabled boolean
enabledEventTypes []string
eventsEnabled boolean
eventsExpiration integer
eventsListeners []string
failureFactor integer
federatedUsers []object
access object
applicationRoles object
attributes object
clientConsents []object
clientId string
createdDate integer
grantedClientScopes []string
grantedRealmRoles []string
lastUpdatedDate integer
clientRoles object
createdTimestamp integer
credentials []object
algorithm string
config object
counter integer
createdDate integer
credentialData string
device string
digits integer
federationLink string
hashIterations integer
hashedSaltedValue string
id string
period integer
priority integer
salt string
secretData string
temporary boolean
type string
userLabel string
value string
disableableCredentialTypes []string
email string
emailVerified boolean
enabled boolean
federatedIdentities []object
identityProvider string
userId string
userName string
federationLink string
firstName string
groups []string
id string
issuedVerifiableCredentials []object
clientBaseUrl string
clientId string
clientName string
credentialType string
expiresAt integer
id string
issuedAt integer
revision string
userId string
lastName string
notBefore integer
origin string
realmRoles []string
requiredActions []string
self string
serviceAccountClientId string
socialLinks []object
socialProvider string
socialUserId string
socialUsername string
totp boolean
userProfileMetadata object
attributes []object
annotations object
defaultValue string
displayName string
group string
multivalued boolean
name string
readOnly boolean
required boolean
validators object
groups []object
annotations object
displayDescription string
displayHeader string
name string
username string
verifiableCredentials []object
createdDate integer
credentialConfigurationId string
credentialScopeName string
revision string
updatedDate integer
userAttributes object
firstBrokerLoginFlow string
groups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
id string
identityProviderMappers []object
config object
id string
identityProviderAlias string
identityProviderMapper string
name string
identityProviders []object
addReadTokenRoleOnCreate boolean
alias string
authenticateByDefault boolean
config object
displayName string
enabled boolean
firstBrokerLoginFlowAlias string
hideOnLogin boolean
internalId string
linkOnly boolean
organizationLinks []object
autoMembership boolean
membershipType string
organizationId string
postBrokerLoginFlowAlias string
providerId string
storeToken boolean
trustEmail boolean
types []string
updateProfileFirstLoginMode string
internationalizationEnabled boolean
keycloakVersion string
localizationTexts object
loginTheme string
loginWithEmailAllowed boolean
maxDeltaTimeSeconds integer
maxFailureWaitSeconds integer
maxSecondaryAuthFailures integer
maxTemporaryLockouts integer
minimumQuickLoginWaitSeconds integer
notBefore integer
oauth2DeviceCodeLifespan integer
oauth2DevicePollingInterval integer
oauthClients []object
access object
adminUrl string
alwaysDisplayInConsole boolean
attributes object
authenticationFlowBindingOverrides object
authorizationServicesEnabled boolean
authorizationSettings object
allowRemoteResourceManagement boolean
authorizationSchema object
resourceTypes object
clientId string
decisionStrategy string
enum: AFFIRMATIVE, CONSENSUS, UNANIMOUS
id string
name string
policies []object
config object
decisionStrategy string
enum: AFFIRMATIVE, CONSENSUS, UNANIMOUS
description string
id string
logic string
enum: NEGATIVE, POSITIVE
name string
owner string
policies []string
resourceType string
resources []string
resourcesData []object
_id string
attributes object
displayName string
icon_uri string
name string
owner object
id string
name string
ownerManagedAccess boolean
scopes []object
displayName string
iconUri string
id string
name string
type string
uris []string
scopes []string
scopesData []object
displayName string
iconUri string
id string
name string
type string
policyEnforcementMode string
enum: DISABLED, ENFORCING, PERMISSIVE
resources []object
_id string
attributes object
displayName string
icon_uri string
name string
owner object
id string
name string
ownerManagedAccess boolean
scopes []object
displayName string
iconUri string
id string
name string
type string
uris []string
scopes []object
displayName string
iconUri string
id string
name string
baseUrl string
bearerOnly boolean
claims object
address boolean
email boolean
gender boolean
locale boolean
name boolean
phone boolean
picture boolean
profile boolean
username boolean
website boolean
clientAuthenticatorType string
clientId string
clientTemplate string
consentRequired boolean
defaultClientScopes []string
defaultRoles []string
description string
directAccessGrantsEnabled boolean
directGrantsOnly boolean
enabled boolean
frontchannelLogout boolean
fullScopeAllowed boolean
id string
implicitFlowEnabled boolean
name string
nodeReRegistrationTimeout integer
notBefore integer
optionalClientScopes []string
origin string
protocol string
protocolMappers []object
config object
consentRequired boolean
consentText string
id string
name string
protocol string
protocolMapper string
publicClient boolean
redirectUris []string
registeredNodes object
registrationAccessToken string
rootUrl string
secret string
serviceAccountsEnabled boolean
standardFlowEnabled boolean
surrogateAuthRequired boolean
type string
useTemplateConfig boolean
useTemplateMappers boolean
useTemplateScope boolean
webOrigins []string
offlineSessionIdleTimeout integer
offlineSessionMaxLifespan integer
offlineSessionMaxLifespanEnabled boolean
organizations []object
alias string
attributes object
description string
domains []object
autoRedirect boolean
identityProviderAlias string
name string
verified boolean
enabled boolean
groups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
subGroups []object
access object
attributes object
clientRoles object
description string
id string
name string
parentId string
path string
realmRoles []string
subGroupCount integer
id string
identityProviders []object
addReadTokenRoleOnCreate boolean
alias string
authenticateByDefault boolean
config object
displayName string
enabled boolean
firstBrokerLoginFlowAlias string
hideOnLogin boolean
internalId string
linkOnly boolean
organizationLinks []object
autoMembership boolean
membershipType string
organizationId string
postBrokerLoginFlowAlias string
providerId string
storeToken boolean
trustEmail boolean
types []string
updateProfileFirstLoginMode string
members []object
access object
applicationRoles object
attributes object
clientConsents []object
clientId string
createdDate integer
grantedClientScopes []string
grantedRealmRoles []string
lastUpdatedDate integer
clientRoles object
createdTimestamp integer
credentials []object
algorithm string
config object
counter integer
createdDate integer
credentialData string
device string
digits integer
federationLink string
hashIterations integer
hashedSaltedValue string
id string
period integer
priority integer
salt string
secretData string
temporary boolean
type string
userLabel string
value string
disableableCredentialTypes []string
email string
emailVerified boolean
enabled boolean
federatedIdentities []object
identityProvider string
userId string
userName string
federationLink string
firstName string
groups []string
id string
issuedVerifiableCredentials []object
clientBaseUrl string
clientId string
clientName string
credentialType string
expiresAt integer
id string
issuedAt integer
revision string
userId string
lastName string
membershipType string
enum: MANAGED, UNMANAGED
notBefore integer
origin string
realmRoles []string
requiredActions []string
self string
serviceAccountClientId string
socialLinks []object
socialProvider string
socialUserId string
socialUsername string
totp boolean
userProfileMetadata object
attributes []object
annotations object
defaultValue string
displayName string
group string
multivalued boolean
name string
readOnly boolean
required boolean
validators object
groups []object
annotations object
displayDescription string
displayHeader string
name string
username string
verifiableCredentials []object
createdDate integer
credentialConfigurationId string
credentialScopeName string
revision string
updatedDate integer
userAttributes object
name string
redirectUrl string
organizationsEnabled boolean
otpPolicyAlgorithm string
otpPolicyCodeReusable boolean
otpPolicyDigits integer
otpPolicyInitialCounter integer
otpPolicyLookAheadWindow integer
otpPolicyPeriod integer
otpPolicyType string
otpSupportedApplications []string
passwordCredentialGrantAllowed boolean
passwordPolicy string
permanentLockout boolean
privateKey string
protocolMappers []object
config object
consentRequired boolean
consentText string
id string
name string
protocol string
protocolMapper string
publicKey string
quickLoginCheckMilliSeconds integer
realm string
refreshTokenMaxReuse integer
registrationAllowed boolean
registrationEmailAsUsername boolean
registrationFlow string
rememberMe boolean
requiredActions []object
alias string
config object
defaultAction boolean
enabled boolean
name string
priority integer
providerId string
requiredCredentials []string
resetCredentialsFlow string
resetPasswordAllowed boolean
revokeRefreshToken boolean
roles object
application object
client object
realm []object
attributes object
clientRole boolean
composite boolean
composites object
application object
client object
realm []string
containerId string
description string
id string
name string
scopeParamRequired boolean
scimApiEnabled boolean
scopeMappings []object
client string
clientScope string
clientTemplate string
roles []string
self string
smtpServer object
social boolean
socialProviders object
sslRequired string
ssoSessionIdleTimeout integer
ssoSessionIdleTimeoutRememberMe integer
ssoSessionMaxLifespan integer
ssoSessionMaxLifespanRememberMe integer
supportedLocales []string
updateProfileOnInitialSocialLogin boolean
userFederationMappers []object
config object
federationMapperType string
federationProviderDisplayName string
id string
name string
userFederationProviders []object
changedSyncPeriod integer
config object
displayName string
fullSyncPeriod integer
id string
lastSync integer
priority integer
providerName string
userManagedAccessAllowed boolean
users []object
access object
applicationRoles object
attributes object
clientConsents []object
clientId string
createdDate integer
grantedClientScopes []string
grantedRealmRoles []string
lastUpdatedDate integer
clientRoles object
createdTimestamp integer
credentials []object
algorithm string
config object
counter integer
createdDate integer
credentialData string
device string
digits integer
federationLink string
hashIterations integer
hashedSaltedValue string
id string
period integer
priority integer
salt string
secretData string
temporary boolean
type string
userLabel string
value string
disableableCredentialTypes []string
email string
emailVerified boolean
enabled boolean
federatedIdentities []object
identityProvider string
userId string
userName string
federationLink string
firstName string
groups []string
id string
issuedVerifiableCredentials []object
clientBaseUrl string
clientId string
clientName string
credentialType string
expiresAt integer
id string
issuedAt integer
revision string
userId string
lastName string
notBefore integer
origin string
realmRoles []string
requiredActions []string
self string
serviceAccountClientId string
socialLinks []object
socialProvider string
socialUserId string
socialUsername string
totp boolean
userProfileMetadata object
attributes []object
annotations object
defaultValue string
displayName string
group string
multivalued boolean
name string
readOnly boolean
required boolean
validators object
groups []object
annotations object
displayDescription string
displayHeader string
name string
username string
verifiableCredentials []object
createdDate integer
credentialConfigurationId string
credentialScopeName string
revision string
updatedDate integer
userAttributes object
verifiableCredentialsEnabled boolean
verifyEmail boolean
waitIncrementSeconds integer
webAuthnPolicyAcceptableAaguids []string
webAuthnPolicyAttestationConveyancePreference string
webAuthnPolicyAuthenticatorAttachment string
webAuthnPolicyAvoidSameAuthenticatorRegister boolean
webAuthnPolicyCreateTimeout integer
webAuthnPolicyExtraOrigins []string
webAuthnPolicyPasswordlessAcceptableAaguids []string
webAuthnPolicyPasswordlessAttestationConveyancePreference string
webAuthnPolicyPasswordlessAuthenticatorAttachment string
webAuthnPolicyPasswordlessAvoidSameAuthenticatorRegister boolean
webAuthnPolicyPasswordlessCreateTimeout integer
webAuthnPolicyPasswordlessExtraOrigins []string
webAuthnPolicyPasswordlessMediation string
webAuthnPolicyPasswordlessPasskeysEnabled boolean
webAuthnPolicyPasswordlessRequireResidentKey string
webAuthnPolicyPasswordlessResidentKey string
webAuthnPolicyPasswordlessRpEntityName string
webAuthnPolicyPasswordlessRpId string
webAuthnPolicyPasswordlessSignatureAlgorithms []string
webAuthnPolicyPasswordlessUserVerificationRequirement string
webAuthnPolicyRequireResidentKey string
webAuthnPolicyResidentKey string
webAuthnPolicyRpEntityName string
webAuthnPolicyRpId string
webAuthnPolicySignatureAlgorithms []string
webAuthnPolicyUserVerificationRequirement string
resources object
Compute Resources required by Keycloak container. If not specified, the value is inherited from the Keycloak CR.
claims []object
name string
request string
limits object
requests object
status object
conditions []object
lastTransitionTime string
message string
observedGeneration integer
status string
type string

No matches. Try .spec.keycloakCRName for an exact path