really fix vaultwarden authelia config I think
This commit is contained in:
parent
b3cc253fd5
commit
d160d16cc9
1 changed files with 10 additions and 7 deletions
|
@ -166,16 +166,19 @@ in
|
||||||
upstream = "http://127.0.0.1:${toString config.services.vaultwarden.config.ROCKET_PORT}";
|
upstream = "http://127.0.0.1:${toString config.services.vaultwarden.config.ROCKET_PORT}";
|
||||||
autheliaRules = [
|
autheliaRules = [
|
||||||
{
|
{
|
||||||
domain = "${fqdn}/admin";
|
domain = "${fqdn}";
|
||||||
policy = "two_factor";
|
policy = "two_factor";
|
||||||
subject = ["group:vaultwarden_admin"];
|
subject = ["group:vaultwarden_admin"];
|
||||||
|
resources = [
|
||||||
|
"^/admin"
|
||||||
|
];
|
||||||
|
}
|
||||||
|
# There's no way to protect the webapp using Authelia this way, see
|
||||||
|
# https://github.com/dani-garcia/vaultwarden/discussions/3188
|
||||||
|
{
|
||||||
|
domain = fqdn;
|
||||||
|
policy = "bypass";
|
||||||
}
|
}
|
||||||
# There's no way to protect the webapp using Authelia this way, see https://github.com/dani-garcia/vaultwarden/discussions/3188
|
|
||||||
# {
|
|
||||||
# domain = fqdn;
|
|
||||||
# policy = "two_factor";
|
|
||||||
# subject = ["group:vaultwarden"];
|
|
||||||
# }
|
|
||||||
];
|
];
|
||||||
}
|
}
|
||||||
];
|
];
|
||||||
|
|
Loading…
Reference in a new issue