services:onboarding_portal
Differences
This shows you the differences between two versions of the page.
| Next revision | Previous revision | ||
| services:onboarding_portal [2026/08/26 17:56] – created djgalloway | services:onboarding_portal [2026/08/26 18:18] (current) – djgalloway | ||
|---|---|---|---|
| Line 3: | Line 3: | ||
| This is a service running in [[services: | This is a service running in [[services: | ||
| - | The flow is: | + | === The flow for new users is: === |
| - | - New users register via the portal | + | - New users register via the[[https:// |
| - A magic link is sent to the user | - A magic link is sent to the user | ||
| - Users with @ibm.com or @redhat.com are automatically approved upon clicking the link | - Users with @ibm.com or @redhat.com are automatically approved upon clicking the link | ||
| Line 13: | Line 13: | ||
| - A Lab Admin must still approve in the [[https:// | - A Lab Admin must still approve in the [[https:// | ||
| - Once all approvals are reached, | - Once all approvals are reached, | ||
| - | - The service opens a PR in the keys repo which gets automatically merged | + | - The service opens a PR in the [[https:// |
| - | - The service also opens a PR in the secrets repo which gets automatically merged | + | - The service also opens a PR in the [[https:// |
| - | - The service runs the Wireguard role against soko01 to add their key | + | - The service runs the [[services:Wireguard]] role against soko01 to add their key |
| - The service runs the users role to create their user account on soko04 | - The service runs the users role to create their user account on soko04 | ||
| - The service e-mails the user's Wireguard IP address to them | - The service e-mails the user's Wireguard IP address to them | ||
| - | New users should register through https:// | + | === The flow for existing lab users is: === |
| - | Existing users who need to update or add their [[services: | + | - Existing users register via this [[https:// |
| + | - A magic link is sent to the user | ||
| + | - If the user approves, all of the same PRs are opened, merged, and keys are pushed via ansible | ||
| + | - If the user denies, information (IP address, timestamps, etc.) about the attempt are e-mailed to infra@ceph.io | ||
services/onboarding_portal.1787766961.txt.gz · Last modified: by djgalloway
