Network Intents errors with CAS authentication

Description

If you are using legacy CAS authentication in NSP, you may encounter authorization errors when using Network Intents tools.

As a workaround for this problem, an Admin user can assign access permissions to Network Intent users through Keycloak:

  1. Log into Keycloak: https://<NSP_system_IP_address>/auth   - admin / <admin_password>

  2. Ensure that the realm is set to Nokia.

  3. Under the manager section, click on Users.

  4. Click on View All Users.

  5. Click on the altiplano_admin user ID.

  6. Click on Role Mappings.

  7. Under Client Roles, click on NSP.

  8. Select ALTIPLANO_ADMIN, ALTIPLANO_SYSTEM, ALTIPLANO_VIEWER, and SNMP_MGR_SYSTEM.

  9. Click Add Selected.

  10. Restart the nsp-mdt-ac-0 pod.