This commit is contained in:
soraefir
2026-05-14 20:54:43 +02:00
parent 4e7a348461
commit 983c19eaa5
3 changed files with 7 additions and 18 deletions

View File

@@ -1,9 +1,9 @@
{ ... }: { { ... }: {
imports = [ ./dbus ./fonts ./hw ./locale ./network ./nix ./security ./xdg ]; imports = [ ./dbus ./fonts ./hw ./locale ./network ./nix ./security ./xdg ];
services.journald.extraConfig = '' # services.journald.extraConfig = ''
LineMax=64K # LineMax=128K
SystemMaxUse=256M # SystemMaxUse=512M
SystemMaxFileSize=128M # SystemMaxFileSize=128M
''; # '';
} }

View File

@@ -86,9 +86,6 @@ in {
AUTHENTIK_HOST = "https://${containerCfg.subdomain}.${serverCfg.hostDomain}"; AUTHENTIK_HOST = "https://${containerCfg.subdomain}.${serverCfg.hostDomain}";
AUTHENTIK_INSECURE = "false"; AUTHENTIK_INSECURE = "false";
}; };
overrides = {
ports = [ "636:6636" ];
};
}; };
}; };

View File

@@ -50,6 +50,8 @@ entries:
state: present state: present
identifiers: identifiers:
name: "LDAP Search Role" name: "LDAP Search Role"
permissions:
- "authentik_providers_ldap.search_full_directory"
- model: authentik_core.group - model: authentik_core.group
state: present state: present
@@ -60,13 +62,3 @@ entries:
- !Find [authentik_core.user, [username, "ldap-service"]] - !Find [authentik_core.user, [username, "ldap-service"]]
roles: roles:
- !Find [authentik_rbac.role, [name, "LDAP Search Role"]] - !Find [authentik_rbac.role, [name, "LDAP Search Role"]]
- model: authentik_providers_ldap.ldapprovider
state: present
identifiers:
name: ldap-provider
attrs:
object_permissions:
- role: !Find [authentik_rbac.role, [name, "LDAP Search Role"]]
permissions:
- "authentik_providers_ldap.search_full_directory"