A41
IDP as an installation parameter
Unit E0 · Screens M1 · MCP – (login is not a use case) · Status implemented (2026-09-07; AC2 Entra example to follow in E12)
- AC1 The IDP is configured exclusively via environment variables: issuer URL (discovery), client ID, client secret, claim mapping (N10).
- AC2 Verified example configurations for Keycloak and Entra ID are available at
docs/betrieb/idp-keycloak.mdanddocs/betrieb/idp-entra.md, including realm export and app registration steps respectively. - AC3 A startup with an incomplete IDP configuration aborts with a clear error message.