Skip to content

fix(auth): add api.graphql to ephemeral realm RHCLOUD-51591 - #1819

Merged
bsquizz merged 1 commit into
RedHatInsights:masterfrom
petrsimon:fix/RHCLOUD-51591-ephemeral-api-graphql
Sep 29, 2026
Merged

bsquizz merged 1 commit into
RedHatInsights:masterfrom
petrsimon:fix/RHCLOUD-51591-ephemeral-api-graphql

Conversation

@petrsimon

@petrsimon petrsimon commented Sep 24, 2026 •

Copy link
Copy Markdown
Contributor

Summary

Addresses https://issues.redhat.com/browse/RHCLOUD-51591 by adding api.graphql to the ephemeral realm.

The failing Anchore Grype check is pre-existing (same findings on the base commit) and tracked separately in https://issues.redhat.com/browse/RHCLOUD-51617.

Validation

  • make test — passed
  • make pre-push — passed
  • KUTTL/Python E2E not run: no Minikube profile; current Kubernetes context targets remote stage.
  • golangci-lint not run: unavailable locally.

Assisted by: Pi — gpt-6-luna max

@charlesmulder

Copy link
Copy Markdown

I think this PR requires the expertise of @florkbr

@petrsimon
petrsimon force-pushed the fix/RHCLOUD-51591-ephemeral-api-graphql branch from 4e6f2a5 to 87778aa Compare September 25, 2026 12:45
@petrsimon petrsimon changed the title fix(auth): add api.graphql to ephemeral realm fix(auth): add api.graphql to ephemeral realm [RHCLOUD-51617] Sep 25, 2026
@petrsimon petrsimon changed the title fix(auth): add api.graphql to ephemeral realm [RHCLOUD-51617] fix(auth): add api.graphql to ephemeral realm RHCLOUD-51617 Sep 25, 2026
@petrsimon

Copy link
Copy Markdown
Contributor Author

Hi @bsquizz I was told that you might help with this, would be so kind and take a look. More details in the ticket.

"api.console",
"api.ask_red_hat"
"api.ask_red_hat",
"api.graphql"

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@petrsimon FWIW I was here a few years ago when we added the ARH integration: #1339. I added the new scope in a few more locations (defaultClientScopes appears numerous times) than what you've done here - so I'd just confirm we don't have any gaps.

Copy link
Copy Markdown
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Good catch, @florkbr, done, kindly take a look.

@petrsimon
petrsimon force-pushed the fix/RHCLOUD-51591-ephemeral-api-graphql branch from 87778aa to 9c6fe22 Compare September 29, 2026 09:08
@petrsimon petrsimon changed the title fix(auth): add api.graphql to ephemeral realm RHCLOUD-51617 fix(auth): add api.graphql to ephemeral realm RHCLOUD-51591 Sep 29, 2026
Define api.graphql as a client scope and assign it by default to cloud-services in the redhat-external realm import.

https://issues.redhat.com/browse/RHCLOUD-51591

Co-Authored-By: gpt-6-luna <noreply@pi.dev>
@petrsimon
petrsimon force-pushed the fix/RHCLOUD-51591-ephemeral-api-graphql branch from 9c6fe22 to d36215f Compare September 29, 2026 09:34

@florkbr florkbr left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good to me now :shipit: We will need someone from clowder to review/merge.

@florkbr

florkbr commented Sep 29, 2026

Copy link
Copy Markdown
Contributor

Grype failures addressed in another PR: #1820

@florkbr

florkbr commented Sep 29, 2026

Copy link
Copy Markdown
Contributor

@bsquizz @JGiola please review/merge. Thank you!

@bsquizz
bsquizz merged commit 4b48c91 into RedHatInsights:master Sep 29, 2026
7 of 8 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants