Rework doc about oidc-agent usage
All threads resolved!
All threads resolved!
Compare changes
+ 16
− 17
@@ -80,10 +80,8 @@ A growing number of Linux distributions have `oidc-agent` already in their repos
@@ -91,6 +89,10 @@ A growing number of Linux distributions have `oidc-agent` already in their repos
- If you are configuring the `oidc-agent` on a computer without an XSession (e.g. on a machine where you are logged in with pure `ssh`, you will need to use the command `oidc-gen --pub --no-url-call --no-webserver <shortname>`. The agent will then print out a URL you can copy into a browser of your choice, log in as usual and you will get a message "Page not found". Copy the URL in the URL-bar of the browser and follow the instructions given by `oidc-agent` in your `ssh`-session before.
- If you are logged into a machine via `ssh` and the `$DISPLAY` environment variable is not set, `oidc-agent` will assume that you are on a "dumb" device and invoke an authorization flow that is deactivated in the Helmholtz AAI. Your configuration attempt will fail unless you set `export DISPLAY=0:` assuming you are on a Linux machine.
@@ -108,33 +110,30 @@ This should give you something like:
"ssh_key": "ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEAyqvhXPY0ETi7c954y3vV+c6bWdIihvrWokmv3GrndaFMyX2cKpzZofKXKdnK7Nv6TFJASCKeLqAyON0CGlE3ZgRw44bnJD5lWNN9uKInZ+EMKKyO4XqgTYoEIsGNTElyHjRw2hvArlQpP89ULnPWsVemdJza+8TTEMtTSVN/fX9ofOk63GJcuOpkH+x7CIWjc7QW5KmLc0Jc2+Xzu4IBmRKRXk9uaI/e7sFXPPLa+PHMtywxmVFhDANyElBSAeRmjo5RHJ1Azd08obMJMJCrfEKoZgLlfz5OpUiF6Ntqu00dSeIVvcyNEgXgfXPX55G5jTEwp7B1H7nakdUVH6e46Q== Carsten Heidmann (RSA)\n",