The reference pages for `identity_providers` (global) and the per-route
allowlist existed, but neither had an entry in reference.json, so the
Console — which builds its help links from that file — rendered no help
icon for either field.
Add both entries, and rename routes/identity-providers.mdx to match its
frontmatter id. Docusaurus derives the URL from the id, not the filename,
so the file-path form used by the sibling pass-identity-headers entry
404s (/docs/reference/routes/pass-identity-headers is a 404 today, while
.../pass-identity-headers-per-route serves). Matching the filename to the
id keeps the disk path and the served URL in agreement; the live URL is
unchanged, so existing links to the page still resolve.
Also correct two statements on the per-route page. It claimed every name
must exist in the global identity_providers map, and that setting the
field on a non-jwt route is a configuration error that stops Pomerium
from starting. Neither holds: validateIdentityProviders only validates
the providers map itself and never cross-checks route references, so both
configurations pass validation. An undeclared name simply never matches a
token's issuer. Document that, and the related sharp edge that an empty
list accepts any configured provider — so emptying a list widens a route
rather than closing it.
updates
reference.jsonforidentity_providers(global) and the per-route allowlist