mirror of
https://github.com/ansible-middleware/keycloak.git
synced 2026-07-25 00:44:48 +00:00
596 lines
23 KiB
ReStructuredText
596 lines
23 KiB
ReStructuredText
.. Document meta
|
|
|
|
:orphan:
|
|
|
|
.. |antsibull-internal-nbsp| unicode:: 0xA0
|
|
:trim:
|
|
|
|
.. meta::
|
|
:antsibull-docs: 2.24.0
|
|
|
|
.. Anchors
|
|
|
|
.. _ansible_collections.middleware_automation.keycloak.keycloak_client_rolescope_module:
|
|
|
|
.. Anchors: short name for ansible.builtin
|
|
|
|
.. Title
|
|
|
|
keycloak_client_rolescope -- Allows administration of Keycloak client roles scope to restrict the usage of certain roles to a other specific client applications
|
|
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
|
|
|
|
.. Collection note
|
|
|
|
.. note::
|
|
This module is part of the `middleware_automation.keycloak collection <https://galaxy.ansible.com/ui/repo/published/middleware_automation/keycloak/>`_.
|
|
|
|
It is not included in ``ansible-core``.
|
|
To check whether it is installed, run :code:`ansible-galaxy collection list`.
|
|
|
|
To install it, use: :code:`ansible\-galaxy collection install middleware\_automation.keycloak`.
|
|
|
|
To use it in a playbook, specify: :code:`middleware_automation.keycloak.keycloak_client_rolescope`.
|
|
|
|
.. version_added
|
|
|
|
.. rst-class:: ansible-version-added
|
|
|
|
New in middleware\_automation.keycloak 3.0.0
|
|
|
|
.. contents::
|
|
:local:
|
|
:depth: 1
|
|
|
|
.. Deprecated
|
|
|
|
|
|
Synopsis
|
|
--------
|
|
|
|
.. Description
|
|
|
|
- This module allows you to add or remove Keycloak roles from clients scope using the Keycloak REST API. It requires access to the REST API using OpenID Connect; the user connecting and the client being used must have the requisite access rights. In a default Keycloak installation, admin\-cli and an admin user would work, as would a separate client definition with the scope tailored to your needs and a user having the expected roles.
|
|
- Client :ansopt:`middleware\_automation.keycloak.keycloak\_client\_rolescope#module:target\_client\_id` must have :ansopt:`middleware\_automation.keycloak.keycloak\_client#module:full\_scope\_allowed` set to :ansval:`false`.
|
|
- Attributes are multi\-valued in the Keycloak API. All attributes are lists of individual values and are returned that way by this module. You may pass single values for attributes when calling the module, and this is translated into a list suitable for the API.
|
|
|
|
|
|
.. Aliases
|
|
|
|
|
|
.. Requirements
|
|
|
|
|
|
|
|
|
|
|
|
|
|
.. Options
|
|
|
|
Parameters
|
|
----------
|
|
|
|
.. raw:: html
|
|
|
|
<table class="colwidths-auto ansible-option-table docutils align-default" style="width: 100%">
|
|
<thead>
|
|
<tr class="row-odd">
|
|
<th class="head"><p>Parameter</p></th>
|
|
<th class="head"><p>Comments</p></th>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-auth_client_id"></div>
|
|
<p class="ansible-option-title"><strong>auth_client_id</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-auth_client_id" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>OpenID Connect <em>client_id</em> to authenticate to the API with.</p>
|
|
<p class="ansible-option-line"><strong class="ansible-option-default-bold">Default:</strong> <code class="ansible-value literal notranslate ansible-option-default">"admin-cli"</code></p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-auth_client_secret"></div>
|
|
<p class="ansible-option-title"><strong>auth_client_secret</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-auth_client_secret" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Client Secret to use in conjunction with <em>auth_client_id</em> (if required).</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-auth_keycloak_url"></div>
|
|
<div class="ansibleOptionAnchor" id="parameter-url"></div>
|
|
<p class="ansible-option-title"><strong>auth_keycloak_url</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-auth_keycloak_url" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line"><span class="ansible-option-aliases">aliases: url</span></p>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
/ <span class="ansible-option-required">required</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>URL to the Keycloak instance.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-auth_password"></div>
|
|
<div class="ansibleOptionAnchor" id="parameter-password"></div>
|
|
<p class="ansible-option-title"><strong>auth_password</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-auth_password" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line"><span class="ansible-option-aliases">aliases: password</span></p>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Password to authenticate for API access with.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-auth_realm"></div>
|
|
<p class="ansible-option-title"><strong>auth_realm</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-auth_realm" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Keycloak realm name to authenticate to for API access.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-auth_username"></div>
|
|
<div class="ansibleOptionAnchor" id="parameter-username"></div>
|
|
<p class="ansible-option-title"><strong>auth_username</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-auth_username" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line"><span class="ansible-option-aliases">aliases: username</span></p>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Username to authenticate for API access with.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-connection_timeout"></div>
|
|
<p class="ansible-option-title"><strong>connection_timeout</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-connection_timeout" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">integer</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Controls the HTTP connections timeout period (in seconds) to Keycloak API.</p>
|
|
<p class="ansible-option-line"><strong class="ansible-option-default-bold">Default:</strong> <code class="ansible-value literal notranslate ansible-option-default">10</code></p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-http_agent"></div>
|
|
<p class="ansible-option-title"><strong>http_agent</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-http_agent" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Configures the HTTP User-Agent header.</p>
|
|
<p class="ansible-option-line"><strong class="ansible-option-default-bold">Default:</strong> <code class="ansible-value literal notranslate ansible-option-default">"Ansible"</code></p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-realm"></div>
|
|
<p class="ansible-option-title"><strong>realm</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-realm" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>The Keycloak realm under which clients resides.</p>
|
|
<p class="ansible-option-line"><strong class="ansible-option-default-bold">Default:</strong> <code class="ansible-value literal notranslate ansible-option-default">"master"</code></p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-refresh_token"></div>
|
|
<p class="ansible-option-title"><strong>refresh_token</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-refresh_token" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Authentication refresh token for Keycloak API.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-role_names"></div>
|
|
<p class="ansible-option-title"><strong>role_names</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-role_names" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">list</span>
|
|
/ <span class="ansible-option-elements">elements=string</span>
|
|
/ <span class="ansible-option-required">required</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Names of roles to manipulate.</p>
|
|
<p>If <code class="ansible-option literal notranslate"><strong><a class="reference internal" href="#parameter-role_owner_client_id"><span class="std std-ref"><span class="pre">role_owner_client_id</span></span></a></strong></code> is present, all roles must be under this client.</p>
|
|
<p>If <code class="ansible-option literal notranslate"><strong><a class="reference internal" href="#parameter-role_owner_client_id"><span class="std std-ref"><span class="pre">role_owner_client_id</span></span></a></strong></code> is absent, all roles must be under the realm.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-role_owner_client_id"></div>
|
|
<p class="ansible-option-title"><strong>role_owner_client_id</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-role_owner_client_id" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>If the <code class="ansible-option literal notranslate"><strong><a class="reference internal" href="#parameter-role_names"><span class="std std-ref"><span class="pre">role_names</span></span></a></strong></code> are client role, the client ID under which it resides.</p>
|
|
<p>If this parameter is absent, the roles are considered a realm role.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-state"></div>
|
|
<p class="ansible-option-title"><strong>state</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-state" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>State of the role mapping.</p>
|
|
<p>On <code class="ansible-value literal notranslate">present</code>, all roles in <code class="ansible-option literal notranslate"><strong><a class="reference internal" href="#parameter-role_names"><span class="std std-ref"><span class="pre">role_names</span></span></a></strong></code> are mapped if not exist yet.</p>
|
|
<p>On <code class="ansible-value literal notranslate">absent</code>, all roles mapping in <code class="ansible-option literal notranslate"><strong><a class="reference internal" href="#parameter-role_names"><span class="std std-ref"><span class="pre">role_names</span></span></a></strong></code> are removed if it exists.</p>
|
|
<p class="ansible-option-line"><strong class="ansible-option-choices">Choices:</strong></p>
|
|
<ul class="simple">
|
|
<li><p><code class="ansible-value literal notranslate ansible-option-default-bold"><strong>"present"</strong></code> <span class="ansible-option-choices-default-mark">← (default)</span></p></li>
|
|
<li><p><code class="ansible-value literal notranslate ansible-option-choices-entry">"absent"</code></p></li>
|
|
</ul>
|
|
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-target_client_id"></div>
|
|
<p class="ansible-option-title"><strong>target_client_id</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-target_client_id" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
/ <span class="ansible-option-required">required</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Roles provided in <code class="ansible-option literal notranslate"><strong><a class="reference internal" href="#parameter-role_names"><span class="std std-ref"><span class="pre">role_names</span></span></a></strong></code> while be added to this client scope.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-token"></div>
|
|
<p class="ansible-option-title"><strong>token</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-token" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Authentication token for Keycloak API.</p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="parameter-validate_certs"></div>
|
|
<p class="ansible-option-title"><strong>validate_certs</strong></p>
|
|
<a class="ansibleOptionLink" href="#parameter-validate_certs" title="Permalink to this option"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">boolean</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Verify TLS certificates (do not disable this in production).</p>
|
|
<p class="ansible-option-line"><strong class="ansible-option-choices">Choices:</strong></p>
|
|
<ul class="simple">
|
|
<li><p><code class="ansible-value literal notranslate ansible-option-choices-entry">false</code></p></li>
|
|
<li><p><code class="ansible-value literal notranslate ansible-option-default-bold"><strong>true</strong></code> <span class="ansible-option-choices-default-mark">← (default)</span></p></li>
|
|
</ul>
|
|
|
|
</div></td>
|
|
</tr>
|
|
</tbody>
|
|
</table>
|
|
|
|
|
|
|
|
.. Attributes
|
|
|
|
|
|
Attributes
|
|
----------
|
|
|
|
.. tabularcolumns:: \X{2}{10}\X{3}{10}\X{5}{10}
|
|
|
|
.. list-table::
|
|
:width: 100%
|
|
:widths: auto
|
|
:header-rows: 1
|
|
:class: longtable ansible-option-table
|
|
|
|
* - Attribute
|
|
- Support
|
|
- Description
|
|
|
|
* - .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="attribute-action_group"></div>
|
|
|
|
.. _ansible_collections.middleware_automation.keycloak.keycloak_client_rolescope_module__attribute-action_group:
|
|
|
|
.. rst-class:: ansible-option-title
|
|
|
|
**action_group**
|
|
|
|
.. raw:: html
|
|
|
|
<a class="ansibleOptionLink" href="#attribute-action_group" title="Permalink to this attribute"></a>
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
- .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
|
|
:ansible-attribute-support-property:`Action group:` |antsibull-internal-nbsp|:ansible-attribute-support-full:`middleware\_automation.keycloak.keycloak`
|
|
|
|
:ansible-option-versionadded:`added in middleware\_automation.keycloak 3.0.0`
|
|
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
- .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
|
|
Use :literal:`group/middleware\_automation.keycloak.keycloak` in :literal:`module\_defaults` to set defaults for this module.
|
|
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
|
|
* - .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="attribute-check_mode"></div>
|
|
|
|
.. _ansible_collections.middleware_automation.keycloak.keycloak_client_rolescope_module__attribute-check_mode:
|
|
|
|
.. rst-class:: ansible-option-title
|
|
|
|
**check_mode**
|
|
|
|
.. raw:: html
|
|
|
|
<a class="ansibleOptionLink" href="#attribute-check_mode" title="Permalink to this attribute"></a>
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
- .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
|
|
:ansible-attribute-support-label:`Support: \ `\ :ansible-attribute-support-full:`full`
|
|
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
- .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
|
|
Can run in :literal:`check\_mode` and return changed status prediction without modifying target.
|
|
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
|
|
* - .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="attribute-diff_mode"></div>
|
|
|
|
.. _ansible_collections.middleware_automation.keycloak.keycloak_client_rolescope_module__attribute-diff_mode:
|
|
|
|
.. rst-class:: ansible-option-title
|
|
|
|
**diff_mode**
|
|
|
|
.. raw:: html
|
|
|
|
<a class="ansibleOptionLink" href="#attribute-diff_mode" title="Permalink to this attribute"></a>
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
- .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
|
|
:ansible-attribute-support-label:`Support: \ `\ :ansible-attribute-support-full:`full`
|
|
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
- .. raw:: html
|
|
|
|
<div class="ansible-option-cell">
|
|
|
|
Will return details on what has changed (or possibly needs changing in :literal:`check\_mode`\ ), when in diff mode.
|
|
|
|
|
|
.. raw:: html
|
|
|
|
</div>
|
|
|
|
|
|
|
|
.. Notes
|
|
|
|
|
|
.. Seealso
|
|
|
|
|
|
.. Examples
|
|
|
|
Examples
|
|
--------
|
|
|
|
.. code-block:: yaml+jinja
|
|
|
|
- name: Add roles to public client scope
|
|
middleware_automation.keycloak.keycloak_client_rolescope:
|
|
auth_keycloak_url: https://auth.example.com
|
|
auth_realm: master
|
|
auth_username: USERNAME
|
|
auth_password: PASSWORD
|
|
realm: MyCustomRealm
|
|
target_client_id: frontend-client-public
|
|
role_owner_client_id: backend-client-private
|
|
role_names:
|
|
- backend-role-admin
|
|
- backend-role-user
|
|
|
|
- name: Remove roles from public client scope
|
|
middleware_automation.keycloak.keycloak_client_rolescope:
|
|
auth_keycloak_url: https://auth.example.com
|
|
auth_realm: master
|
|
auth_username: USERNAME
|
|
auth_password: PASSWORD
|
|
realm: MyCustomRealm
|
|
target_client_id: frontend-client-public
|
|
role_owner_client_id: backend-client-private
|
|
role_names:
|
|
- backend-role-admin
|
|
state: absent
|
|
|
|
- name: Add realm roles to public client scope
|
|
middleware_automation.keycloak.keycloak_client_rolescope:
|
|
auth_keycloak_url: https://auth.example.com
|
|
auth_realm: master
|
|
auth_username: USERNAME
|
|
auth_password: PASSWORD
|
|
realm: MyCustomRealm
|
|
target_client_id: frontend-client-public
|
|
role_names:
|
|
- realm-role-admin
|
|
- realm-role-user
|
|
|
|
|
|
|
|
.. Facts
|
|
|
|
|
|
.. Return values
|
|
|
|
Return Values
|
|
-------------
|
|
Common return values are documented :ref:`here <common_return_values>`, the following are the fields unique to this module:
|
|
|
|
.. raw:: html
|
|
|
|
<table class="colwidths-auto ansible-option-table docutils align-default" style="width: 100%">
|
|
<thead>
|
|
<tr class="row-odd">
|
|
<th class="head"><p>Key</p></th>
|
|
<th class="head"><p>Description</p></th>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
<tr class="row-even">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="return-end_state"></div>
|
|
<p class="ansible-option-title"><strong>end_state</strong></p>
|
|
<a class="ansibleOptionLink" href="#return-end_state" title="Permalink to this return value"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">list</span>
|
|
/ <span class="ansible-option-elements">elements=dictionary</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Representation of role role scope after module execution.</p>
|
|
<p class="ansible-option-line"><strong class="ansible-option-returned-bold">Returned:</strong> on success</p>
|
|
<p class="ansible-option-line ansible-option-sample"><strong class="ansible-option-sample-bold">Sample:</strong> <code class="ansible-value literal notranslate ansible-option-sample">[{"clientRole": false, "composite": false, "containerId": "MyCustomRealm", "id": "47293104-59a6-46f0-b460-2e9e3c9c424c", "name": "backend-role-admin"}, {"clientRole": false, "composite": false, "containerId": "MyCustomRealm", "id": "39c62a6d-542c-4715-92d2-41021eb33967", "name": "backend-role-user"}]</code></p>
|
|
</div></td>
|
|
</tr>
|
|
<tr class="row-odd">
|
|
<td><div class="ansible-option-cell">
|
|
<div class="ansibleOptionAnchor" id="return-msg"></div>
|
|
<p class="ansible-option-title"><strong>msg</strong></p>
|
|
<a class="ansibleOptionLink" href="#return-msg" title="Permalink to this return value"></a>
|
|
<p class="ansible-option-type-line">
|
|
<span class="ansible-option-type">string</span>
|
|
</p>
|
|
</div></td>
|
|
<td><div class="ansible-option-cell">
|
|
<p>Message as to what action was taken.</p>
|
|
<p class="ansible-option-line"><strong class="ansible-option-returned-bold">Returned:</strong> always</p>
|
|
<p class="ansible-option-line ansible-option-sample"><strong class="ansible-option-sample-bold">Sample:</strong> <code class="ansible-value literal notranslate ansible-option-sample">"Client role scope for frontend-client-public has been updated"</code></p>
|
|
</div></td>
|
|
</tr>
|
|
</tbody>
|
|
</table>
|
|
|
|
|
|
|
|
.. Status (Presently only deprecated)
|
|
|
|
|
|
.. Authors
|
|
|
|
Authors
|
|
~~~~~~~
|
|
|
|
- Andre Desrosiers (@desand01)
|
|
|
|
|
|
.. Extra links
|
|
|
|
|
|
.. Parsing errors
|