1
0
Fork 0
Commit graph

473 commits

Author SHA1 Message Date
ibizaman
957eefe97e move keycloak db to consolidated location 2023-02-19 20:37:52 -08:00
ibizaman
e7f8bfc8f9 use correct subdomain for keycloak 2023-02-19 20:37:52 -08:00
ibizaman
52af93898c protect vaultwarden with oauth2proxy 2023-02-19 20:37:52 -08:00
ibizaman
a93a9cc7c5 [keys] fix domain not being set 2023-02-19 20:37:52 -08:00
ibizaman
3861ad9c5a [ttrss] only set logout_url if sso is given 2023-02-19 20:37:52 -08:00
ibizaman
3b09116a76 merge deploy keys into service 2023-02-19 20:37:52 -08:00
ibizaman
132e6cff86 merge files for vaultwarden 2023-02-19 20:37:52 -08:00
ibizaman
a8dfbe7154 haproxy reaching to hostname is wip 2023-02-19 20:37:52 -08:00
ibizaman
6cbf1fc694 add resolvers to haproxy 2023-02-19 20:37:52 -08:00
ibizaman
ef526699b4 allow to add to haproxy globals and defaults 2023-02-19 20:37:52 -08:00
ibizaman
eafb9f311d resolve hostname from inside 2023-02-19 20:37:52 -08:00
ibizaman
ba14b8d4a1 merge files for ttrss 2023-02-19 20:37:52 -08:00
ibizaman
c98cfdb892 add system76 hardware option 2023-02-19 20:37:52 -08:00
ibizaman
8230336cb5 merge files for postgresdb 2023-02-19 20:37:52 -08:00
ibizaman
5ef3fdba89 merge config with unit for php-fpm 2023-02-19 20:37:52 -08:00
ibizaman
ba6f27b47c merge config with unit for nginx 2023-02-19 20:37:52 -08:00
ibizaman
f7a9e97a13 merge config with unit for keycloak-cli-config 2023-02-19 20:37:52 -08:00
ibizaman
61bad67112 merge config with unit for keycloak 2023-02-19 20:37:52 -08:00
ibizaman
a670d691bc merge config with unit for haproxy 2023-02-19 20:37:52 -08:00
ibizaman
e41918a1a7 merge config with unit for caddy 2023-02-19 20:37:52 -08:00
ibizaman
2213db7ce9 default ttrss to use auth_remote by default 2023-02-19 20:37:52 -08:00
ibizaman
cdc41a04e9 move all vaultwarden config to default.nix 2023-02-19 20:37:52 -08:00
ibizaman
a89b6b5afc move haproxy vaultwarden config to default.nix 2023-02-19 20:37:52 -08:00
ibizaman
8d63d72b2d move function to utils 2023-02-19 20:37:52 -08:00
ibizaman
414d80d105 use vaultwarden variables for user and group 2023-02-19 20:37:52 -08:00
ibizaman
1a09a916f4 add jwtverify.lua to haproxy 2023-02-19 20:37:52 -08:00
ibizaman
f92f2f6cb6 download keycloak public keys 2023-02-19 20:37:52 -08:00
ibizaman
4b0274153c add vaultwarden service without protected /admin 2023-02-19 20:37:52 -08:00
ibizaman
e9ef7f3a1a add support for plugins in haproxy config 2023-02-19 20:37:52 -08:00
ibizaman
9407df4eb5 use correct ordering for haproxy config 2023-02-19 20:37:52 -08:00
ibizaman
a6eba63f5f fix haproxy config generation tests 2023-02-19 20:37:52 -08:00
ibizaman
9246c03154 add todos for jellyfin 2023-02-19 20:37:52 -08:00
ibizaman
70ab22503d use attrset to define haproxy config 2023-02-19 20:37:52 -08:00
ibizaman
2f2c2161a3 parametrize services on the domain name 2023-02-19 20:37:52 -08:00
ibizaman
2b332886c4 use keys attrs for dependencies in keycloak service 2023-02-19 20:37:52 -08:00
ibizaman
453899c46a fix nixos-rebuild involving udev 2023-02-19 20:37:52 -08:00
ibizaman
df45cf258a use with clause to avoid repetitions 2023-02-19 20:37:52 -08:00
ibizaman
ed0983b633 add optional debug for haproxy siteconfig 2023-02-19 20:37:52 -08:00
ibizaman
2f57438489 add optional debug for normalize-headers 2023-02-19 20:37:52 -08:00
ibizaman
5af627c196 reformat a bit 2023-02-19 20:37:52 -08:00
ibizaman
14e8ab7b37 add initial password to keycloak users 2023-02-19 20:37:52 -08:00
ibizaman
99139a774c add more keycloak options and add config creator 2023-02-19 20:37:52 -08:00
ibizaman
eec5b5c24e add haproxy health checks option and tests 2023-02-19 20:37:52 -08:00
ibizaman
fab296e6dc allow multiple haproxy servers with options 2023-02-19 20:37:52 -08:00
ibizaman
50bb2da5e7 add keycloak-cli-config to setup keycloak with two users 2023-02-19 20:37:52 -08:00
ibizaman
5b7e7cd6a8 set keycloak initial admin user through env var 2023-02-19 20:37:52 -08:00
ibizaman
e862324afa preliminary changes for password file in postgres 2023-02-19 20:37:52 -08:00
ibizaman
411e1368d5 add keycloak 2023-02-19 20:37:52 -08:00
ibizaman
45ad9cb9d9 use a mk* style in services 2023-02-19 20:37:52 -08:00
ibizaman
e551313ccf disable single user mode 2023-02-19 20:37:52 -08:00