Add OIDCRemoteUserClaim on Vhost Template
The old infra has the email for the REMOTE_USER
variable.
We need to add OIDCRemoteUserClaim
in order to match the variable in the new infra.
# The claim that is used when setting the REMOTE_USER variable on OpenID Connect protected paths.
# If the claim name is postfixed with a \"@\", the claim value will be post-fixed with the
# \"iss\" value value (with leading "https://" stripped) to make this value unique across different OPs.
# When not defined the default "sub@" is used.
#
# An optional regular expression can be added as a 2nd parameter that will be applied to the
# resulting value from the 1st parameter and the first match returned from that expression will
# be set as the REMOTE_USER. E.g. to strip a domain from an e-mail style address you'd use ^(.*)@
#
# An optional 3rd parameter can be added that would contain string with number backrefrences.
# Backrefrences must be in the form $1, $2.. etc.
# E.g. to extract username in the form DOMAIN\userid from e-mail style address you may use
# ^(.*)@([^.]+)\..+$ $2\\$1
OIDCRemoteUserClaim <claim-name>[@] [<regular-expression>]
Available claims:
https://auth.docs.cern.ch/user-documentation/oidc/config/#what-will-be-in-your-tokens