Conversation
Describe the ENABLE_USER_REGISTRATION and ENABLE_LOCAL_USERS backend flags, the new 403 responses on the auth endpoints, the flags reported by GET /, and how the UI hides password login when local users are disabled. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
The backend merged ENABLE_USER_REGISTRATION into ENABLE_LOCAL_USERS, and local users are now off unless the flag is true. Update the auth reference and env-var tables, and add the flag to the local and Docker setup guides so the admin/password login keeps working. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
Local users are now off by default, so the Docker quick start must set ENABLE_LOCAL_USERS=true before logging in with a db_manage user. Add a troubleshooting tip with the exact 403 message to the local and Docker Celery setup guides, and note that changing .env requires recreating the Flask container. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
This branch was successfully deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
What
Documents the Keycloak-only mode added in yaptide/yaptide#1676 and yaptide/ui#2427: a single backend flag,
ENABLE_LOCAL_USERS, which is off by default.db_manage.py add-userneed the flag. The@requires_authsteps now mention that local users are rejected.local_users_enabledfield returned byGET /.pytest.initurns it on for tests.ENABLE_LOCAL_USERS=trueadded. Without it, the documentedadmin/passwordlogin now fails with 403.ENABLE_LOCAL_USERS=trueto.envbeforedocker compose up, and notes that a change to.envneeds the container recreated (up -d, notrestart).localUsersEnabledhides the "use password login" link.Developer impact
Every developer who runs the backend locally and logs in with a local user (
admin/password) now has to setENABLE_LOCAL_USERS=true. Each guide that uses a local login now does so. The Slurm guides log in through the local Keycloak (devuser), so they need no change. The test suite is unaffected, becausepytest.initurns the flag on.Testing
npm run buildpasses, and the#keycloak-only-deploymentsanchor resolves.🤖 Generated with Claude Code