services:onboarding_portal
This is an old revision of the document!
Onboarding Portal
Summary
This is a service running in openshift that is reverse proxied through soko01. It was designed to replace the manual process of lab user creation.
The flow is:
- New users register via the portal
- A magic link is sent to the user
- Users with @ibm.com or @redhat.com are automatically approved upon clicking the link
- Users without those domains must specify a sponsor
- A sponsor must either be an existing lab user or have an @ibm.com or @redhat.com e-mail address
- Sponsors also receive a magic link and must click to approve
- A Lab Admin must still approve in the admin portal.
- Once all approvals are reached,
- The service opens a PR in the keys repo which gets automatically merged
- The service also opens a PR in the secrets repo which gets automatically merged
- The service runs the Wireguard role against soko01 to add their key
- The service runs the users role to create their user account on soko04
- The service e-mails the user's Wireguard IP address to them
New users should register through https://onboarding.sepia.ceph.com/
Existing users who need to update or add their wireguard key or SSH key should use https://onboarding.sepia.ceph.com/wireguard/request
services/onboarding_portal.1787767088.txt.gz · Last modified: by djgalloway
