2021-08-12 12:37:05 -07:00 
										
									 
								 
							 
							
								
							 
							
								 
							
							
								# Configure OpenMetadata Server
  
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								## Update conf/openmetadata-security.yaml
  
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								
							 
						 
					
						
							
								
									
										
										
										
											2021-08-16 16:52:35 +00:00 
										
									 
								 
							 
							
								
									
										 
								
							 
							
								 
							
							
								*  Once the **Client Id** , **Client secret** , **issuer,**  and the **audience**  are generated, add those details in `openmetadata-security.yaml`  file in the respective field. 
						 
					
						
							
								
									
										
										
										
											2021-08-12 12:37:05 -07:00 
										
									 
								 
							 
							
								
							 
							
								 
							
							
								
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								```text
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								authenticationConfiguration:
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  provider: "google"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  publicKey: "https://www.googleapis.com/oauth2/v3/certs"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  authority: "https://accounts.google.com"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  clientId: "{Client Secret}"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  callbackUrl: "http://localhost:8585/callback"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								```
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								
							 
						 
					
						
							
								
									
										
										
										
											2021-08-12 21:14:42 +00:00 
										
									 
								 
							 
							
								
									
										 
								
							 
							
								 
							
							
								*  Update `authorizerConfiguration`  to add `adminPrincipals`  
						 
					
						
							
								
									
										
										
										
											2021-08-12 12:37:05 -07:00 
										
									 
								 
							 
							
								
							 
							
								 
							
							
								
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								```text
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								authorizerConfiguration:
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  className: "org.openmetadata.catalog.security.DefaultCatalogAuthorizer"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  # JWT Filter
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  containerRequestFilter: "org.openmetadata.catalog.security.JwtFilter"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  adminPrincipals:
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								    -  "suresh"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  botPrincipals:
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								    -  "ingestion-bot"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								  prinicipalDomain: "open-metadata.org"
							 
						 
					
						
							
								
							 
							
								
							 
							
								 
							
							
								```