nhnn
86233cac27
style: format tree
2025-06-18 19:53:44 +03:00
Alexander Tomokhov
72472e8edf
auth: do not create sp.selfprivacy-api.* groups
2025-04-22 21:17:59 +04:00
Alexander Tomokhov
849b695aa4
auth: create a proper selfprivacy-api token via auth module
...
- selfprivacy-api NixOS module can use selfprivacy.auth.clients option
to configure its own client
- when "selfprivacy-api" OAuth ID name is used, read-write token is
created and idm_admins membership is set
2025-04-22 01:26:29 +04:00
Alexander Tomokhov
69a5103f8b
refact auth: systemd.tmpfiles for /run/keys/selfprivacy-api; comments
2025-04-21 20:22:40 +04:00
Alexander Tomokhov
a96b6b8444
auth: add only roundcube kanidm service account to idm_mail_servers
2025-04-21 20:22:40 +04:00
Alexander Tomokhov
46971cd2be
auth:module: replace special symbols in generated secrets
2025-04-17 13:20:07 +04:00
Alexander Tomokhov
56a56b67b4
auth: add imageFile option
2025-04-17 13:20:07 +04:00
Alexander Tomokhov
9d7fa8ec7d
clean auth/auth.nix and auth/auth-module.nix
2025-04-12 11:06:47 +04:00
Alexander Tomokhov
63ce4d9143
fix auth: name of /run/keys/* folder equals to linux group name
2025-04-11 21:25:11 +04:00
Alexander Tomokhov
b87c37afa2
auth: rewrite /run/keys/* creation to tmpfiles.d
2025-04-11 19:36:11 +04:00
Alexander Tomokhov
3f95b80c3c
auth module: add originLanding option
2025-03-26 15:57:59 +04:00
Alexander Tomokhov
8013f2e394
auth: module for easier integration of new services with Kanidm
...
- Forgejo is migrated to this module.
2025-03-21 16:40:18 +04:00