You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
hetzner-ansible/roles/keycloak/tasks/create_realm_users.yml

62 lines
1.5 KiB
YAML

---
- name: Read users of realm {{ current_realm_name }}
uri:
url: http://localhost:{{ service_port_keycloak_external }}/auth/admin/realms/{{ current_realm_name }}/users
method: GET
headers:
Authorization: "Bearer {{ access_token}} "
status_code: [200]
register: realm_users
tags:
- create_users
- update_realms
#- name: Print realm users
# debug:
# msg: "{{ realm_users }}"
# tags:
# - create_users
# - update_realms
- name: Save realm users as variable (fact)
set_fact:
realm_users_json: "{{ realm_users.json }}"
tags:
- create_users
- update_realms
- name: Read realm user ids
set_fact:
realm_user_usernames: "{{ realm_users_json | json_query(jmesquery) }}"
vars:
jmesquery: '[*].username'
tags:
- create_users
- update_realms
#- name: Print realm usernames
# debug:
# msg: "{{ realm_user_usernames }}"
# tags:
# - create_users
# - update_realms
- name: "Create users for realm {{ current_realm_name }}"
uri:
url: http://localhost:{{ service_port_keycloak_external }}/auth/admin/realms/{{ current_realm_name }}/users
method: POST
body_format: json
body: "{{ lookup('template','keycloak-realm-create-user.json.j2') }}"
headers:
Content-Type: "application/json"
Authorization: "Bearer {{ access_token }}"
status_code: [201]
with_items: "{{ current_realm_users }}"
when: current_realm_user.username not in realm_user_usernames
loop_control:
loop_var: current_realm_user
tags:
- create_users
- update_realms