blob: 94e41010fe01a7d007cfbcece4c517d0e0bbebe8 [file] [log] [blame]
-- 10.1.init.sql
/*
将 paas.example.com 替换为 paas.学校域名.edu.cn
*/
use admin_center;
-- 更新 admin-management 下菜单的访问域
update TB_MGT_PERMISSION
set
ORIGIN='http://admin-management.paas.example.com'
where APPLICATION_ID='00000'
;
commit;
-- 更新 admin-platform 下菜单的访问域
update TB_MGT_PERMISSION
set
ORIGIN='http://admin-platform.paas.example.com'
where APPLICATION_ID='1'
;
commit;
use cas_server;
-- 更新 服务 admin-center 的信息(废弃)
update TB_SERVICE
set
DELETED=1,
INFORMATION_URL='http://admin-center.paas.example.com/admin',
LOGOUT_URL='https://admin-center.paas.example.com/admin/slo?redirect_uri=https://admin-platform.paas.example.com/?clearCertification=clearCertification',
SERVICE_ID='http://admin-center.paas.example.com/admin/cas/(.*)'
where ID='1'; -- todo, modify
commit;
-- admin-management 的认证对接信息
INSERT INTO `TB_SERVICE` (`ID`, `COMPANY_ID`, `DELETED`, `ADD_ACCOUNT`, `ADD_TIME`,
`NAME`, `DESCRIPTION`, `INFORMATION_URL`, `LOGOUT_URL`,
`RESPONSE_TYPE`, `LOGOUT_TYPE`,
`EVALUATION_ORDER`, `FRIENDLY_NAME`, `REGISTERED_SERVICE_ID`, `SERVICE_ID`,
`ENABLED`, `SSO_ENABLED`, `REQUIRE_ALL_ATTRIBUTES`,
`APPLICATION_ID`, `EXTERNAL_ID`)
VALUES ('20', '1', 0, 'admin', '2020-07-01 00:00:00',
'基础管理', '基础管理', 'https://admin-management.paas.example.com', 'https://admin-management.paas.example.com/?clearToken=clearToken',
'REDIRECT', 'FRONT_CHANNEL',
20, '基础管理', 20, 'https://admin-management.paas.example.com/(.*)',
1, 1, 1,
'20', '20');
commit;
-- 修改根域名
update TB_SERVICE
set
INFORMATION_URL='http://admin-management.paas.example.com',
LOGOUT_URL='http://admin-management.paas.example.com/?clearToken=clearToken',
SERVICE_ID='http://admin-management.paas.example.com/(.*)',
ID_TOKEN_ENABLED=1,
JWT_AS_SERVICE_TICKET=1,
APPLICATION_DOMAIN='admin-management.paas.example.com'
where ID='20'; -- todo, modify
commit;
-- admin-platform 的认证对接信息
INSERT INTO `TB_SERVICE` (`ID`, `COMPANY_ID`, `DELETED`, `ADD_ACCOUNT`, `ADD_TIME`,
`NAME`, `DESCRIPTION`, `INFORMATION_URL`, `LOGOUT_URL`,
`RESPONSE_TYPE`, `LOGOUT_TYPE`,
`EVALUATION_ORDER`, `FRIENDLY_NAME`, `REGISTERED_SERVICE_ID`, `SERVICE_ID`,
`ENABLED`, `SSO_ENABLED`, `REQUIRE_ALL_ATTRIBUTES`,
`APPLICATION_ID`, `EXTERNAL_ID`)
VALUES ('21', '1', 0, 'admin', '2020-07-01 00:00:00',
'云平台', '云平台', 'https://admin-platform.paas.example.com', 'https://admin-platform.paas.example.com/?clearCertification=clearCertification',
'REDIRECT', 'FRONT_CHANNEL',
21, '云平台', 21, 'https://admin-platform.paas.example.com/(.*)',
1, 1, 1,
'21', '21');
commit;
-- 修改根域名
update TB_SERVICE
set
INFORMATION_URL='http://admin-platform.paas.example.com',
LOGOUT_URL='http://admin-platform.paas.example.com/?clearCertification=clearCertification',
SERVICE_ID='http://admin-platform.paas.example.com/(.*)',
ID_TOKEN_ENABLED=1,
JWT_AS_SERVICE_TICKET=1,
APPLICATION_DOMAIN='admin-platform.paas.example.com'
where ID='21'; -- todo, modify
commit;
-- 清理用户授权的管理角色
use admin_center;
update TB_MGT_ROLE
set DELETED=1, STATUS='0'
where ID in ('20', '30', '40', '41', '42')
;
commit;
use user_authz;
update TB_ROLE
set DELETED=0, APPLICATION_ID='10'
where ID in ('20', '30', '40', '41', '42')
;
commit;
-- 清理用户授权的管理角色 END
use user_authz;
-- 更新 admin-center 下的角色同步地址
-- 外部地址 http://admin-center.paas.example.com/api/v1/open/sync/roles
update TB_APPLICATION
set
SYNC_URL='http://admin-center-sa-svc.admin-center.svc.cluster.local:8080/v1/admin/open/sync/roles'
where ID='1'; -- todo, modify
commit;