From da096e05c8df98218a8f9b2d5d484fb274543938 Mon Sep 17 00:00:00 2001 From: cl0vrfi3ld <47996003+cl0vrfi3ld@users.noreply.github.com> Date: Fri, 4 Jul 2025 12:28:56 -0400 Subject: [PATCH] apparently we don't need `adminsGroup` --- sp-modules/actual/module.nix | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/sp-modules/actual/module.nix b/sp-modules/actual/module.nix index 53c4fe5..6a83fb4 100644 --- a/sp-modules/actual/module.nix +++ b/sp-modules/actual/module.nix @@ -16,7 +16,6 @@ let redirect-uri = "${full-domain}/openid/callback"; landing-uri = "${full-domain}/login"; oauthDiscoveryURL = auth-passthru.oauth2-discovery-url oauthClientID; - adminsGroup = "sp.${oauthClientID}.admins"; usersGroup = "sp.${oauthClientID}.users"; linuxUserOfService = "actual"; @@ -205,7 +204,7 @@ in # OIDC for Actual is currently in beta and requires legacy cryptography algorithms services.kanidm.provision.systems.oauth2."${oauthClientID}".enableLegacyCrypto = true; selfprivacy.auth.clients."${oauthClientID}" = { - inherit adminsGroup usersGroup; + inherit usersGroup; imageFile = ./icon-lg.svg; displayName = "Actual"; subdomain = cfg.subdomain;