This is a draft document that was built and uploaded automatically. It may document beta software and be incomplete or even incorrect. Use this document at your own risk.
After UAA is deployed successfully, users will not be able to log in to the
UAA user interface (UI) with the admin user and the
UAA_ADMIN_CLIENT_SECRET credentials. This user is only an
OAuth client that is authorized to call UAA REST APIs and will need to create
a separate user in the UAA server by using the UAAC utility.
The following prerequisites are required in order to access the UAA UI.
cf, the Cloud Foundry command line interface. For more information,
see https://docs.cloudfoundry.org/cf-cli/.
For SUSE Linux Enterprise and openSUSE systems, install using zypper.
tux > sudo zypper install cf-cliFor SLE, ensure the SUSE Cloud Application Platform Tools Module has been added. Add the module using YaST or SUSEConnect.
tux > SUSEConnect --product sle-module-cap-tools/15.1/x86_64For other systems, follow the instructions at https://docs.cloudfoundry.org/cf-cli/install-go-cli.html.
uaac, the Cloud Foundry uaa command line client
(UAAC). See
https://docs.cloudfoundry.org/uaa/uaa-user-management.html
for more information and installation instructions.
On SUSE Linux Enterprise systems, ensure the ruby-devel and gcc-c++
packages have been installed before installing the cf-uaac gem.
tux > sudo zypper install ruby-devel gcc-c++UAA has been successfully deployed.
Use UAAC to target your uaa server.
tux > uaac target --skip-ssl-validation https://uaa.example.com
Authenticate to the uaa server as
admin using the
uaa_admin_client_secret set in your
kubecf-config-values.yaml file.
tux > uaac token client get admin --secret PASSWORDCreate a new user.
tux > uaac user add NEW-USER -p PASSWORD --emails NEW-USER-EMAIL
Go to the UAA UI at https://uaa.example.com:2793/login
, replacing example.com with your domain.
Log in using the the newly created user. Use the username and password as the credentials.