Network Intents errors with CAS authentication
Description
If you are using legacy CAS authentication in NSP, you may encounter authorization errors when using Network Intents tools.
As a workaround for this problem, an Admin user can assign access permissions to Network Intent users through Keycloak:
-
Log into Keycloak: https://<NSP_system_IP_address>/auth - admin / <admin_password>
-
Ensure that the realm is set to Nokia.
-
Under the manager section, click on Users.
-
Click on View All Users.
-
Click on the altiplano_admin user ID.
-
Click on Role Mappings.
-
Under Client Roles, click on NSP.
-
Select ALTIPLANO_ADMIN, ALTIPLANO_SYSTEM, ALTIPLANO_VIEWER, and SNMP_MGR_SYSTEM.
-
Click Add Selected.
-
Restart the nsp-mdt-ac-0 pod.