{ "realm": "v2x", "displayName": "V2X (development)", "enabled": true, "sslRequired": "none", "registrationAllowed": false, "loginWithEmailAllowed": true, "duplicateEmailsAllowed": false, "accessTokenLifespan": 1800, "ssoSessionIdleTimeout": 3600, "ssoSessionMaxLifespan": 36000, "roles": { "realm": [ { "name": "admin", "description": "Full administrative access, including deletes." }, { "name": "operator", "description": "May create and modify resources." }, { "name": "viewer", "description": "Read-only access." } ] }, "clients": [ { "clientId": "v2x-api", "name": "V2X API (resource server)", "description": "The FastAPI service. Validates tokens; also holds a service account for machine-to-machine callers.", "enabled": true, "protocol": "openid-connect", "publicClient": false, "secret": "dev-only-api-secret", "bearerOnly": false, "standardFlowEnabled": false, "implicitFlowEnabled": false, "directAccessGrantsEnabled": false, "serviceAccountsEnabled": true, "fullScopeAllowed": true, "attributes": { "access.token.lifespan": "1800" }, "protocolMappers": [ { "name": "v2x-api-audience", "protocol": "openid-connect", "protocolMapper": "oidc-audience-mapper", "consentRequired": false, "config": { "included.client.audience": "v2x-api", "id.token.claim": "false", "access.token.claim": "true", "introspection.token.claim": "true" } } ] }, { "clientId": "v2x-swagger", "name": "V2X Swagger UI", "description": "Public client used by /docs to run the authorization-code + PKCE flow.", "enabled": true, "protocol": "openid-connect", "publicClient": true, "standardFlowEnabled": true, "implicitFlowEnabled": false, "directAccessGrantsEnabled": true, "serviceAccountsEnabled": false, "fullScopeAllowed": true, "redirectUris": [ "http://localhost:8000/docs/oauth2-redirect", "http://localhost:8000/*" ], "webOrigins": [ "http://localhost:8000" ], "attributes": { "pkce.code.challenge.method": "S256", "post.logout.redirect.uris": "http://localhost:8000/*" }, "protocolMappers": [ { "name": "v2x-api-audience", "protocol": "openid-connect", "protocolMapper": "oidc-audience-mapper", "consentRequired": false, "config": { "included.client.audience": "v2x-api", "id.token.claim": "false", "access.token.claim": "true", "introspection.token.claim": "true" } } ] } ], "users": [ { "username": "admin@example.com", "email": "admin@example.com", "firstName": "Ada", "lastName": "Admin", "enabled": true, "emailVerified": true, "requiredActions": [], "credentials": [ { "type": "password", "value": "password", "temporary": false } ], "realmRoles": ["admin", "operator", "viewer"] }, { "username": "operator@example.com", "email": "operator@example.com", "firstName": "Otto", "lastName": "Operator", "enabled": true, "emailVerified": true, "requiredActions": [], "credentials": [ { "type": "password", "value": "password", "temporary": false } ], "realmRoles": ["operator", "viewer"] }, { "username": "viewer@example.com", "email": "viewer@example.com", "firstName": "Vera", "lastName": "Viewer", "enabled": true, "emailVerified": true, "requiredActions": [], "credentials": [ { "type": "password", "value": "password", "temporary": false } ], "realmRoles": ["viewer"] } ] }