Description:
On hosted control plane (HCP) clusters, identity providers are configured in the
HostedCluster resource on the management cluster, not in the in-cluster
OAuth/cluster resource. The console still prompts cluster admins to add an
identity provider and links them to the in-cluster OAuth config, where changes
have no lasting effect.
The Configuration tab under /settings/cluster already hides OAuth and
Authentication when controlPlaneTopology is External.
Steps to Reproduce:
- Log in as a cluster admin to a hosted control plane cluster
(Infrastructure status.controlPlaneTopology: External) with no users yet.
- Go to User Management > Users.
The Users page shows "Add identity providers (IDPs) to the OAuth configuration
to allow others to log in." with an "Add IDP" button, which links to the in-cluster
OAuth/cluster details page.

Description:
On hosted control plane (HCP) clusters, identity providers are configured in the
HostedCluster resource on the management cluster, not in the in-cluster
OAuth/cluster resource. The console still prompts cluster admins to add an
identity provider and links them to the in-cluster OAuth config, where changes
have no lasting effect.
The Configuration tab under /settings/cluster already hides OAuth and
Authentication when controlPlaneTopology is External.
Steps to Reproduce:
(Infrastructure status.controlPlaneTopology: External) with no users yet.
The Users page shows "Add identity providers (IDPs) to the OAuth configuration
to allow others to log in." with an "Add IDP" button, which links to the in-cluster
OAuth/cluster details page.