[Draft] Basic LDAP/Portunus config #12
|
@ -1,9 +1,9 @@
|
|||
potential security risk potential security risk
should be nix path should be nix path
|
||||
{ config, ... }:
|
||||
let
|
||||
# temporary url, zum testen auf laptop zuhause
|
||||
tld = "moe";
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
hostname = "eisvogel";
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
domain = "portunus.${hostname}.${tld}";
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
tld = "de";
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
hostname = "ifsr";
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
domain = "auth.staging.${hostname}.${tld}";
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
|
||||
portunusUser = "portunus";
|
||||
portunusGroup = "portunus";
|
||||
|
@ -53,13 +53,6 @@ in
|
|||
potential security risk potential security risk
should be nix path should be nix path
potential security risk potential security risk
should be nix path should be nix path
|
||||
seedPath = "../config/portunus_seeds.json";
|
||||
};
|
||||
|
||||
users.ldap = {
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
enable = true;
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
server = "ldaps://${domain}";
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
base = "dc=${hostname},dc=${tld}";
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
# useTLS = true; # nicht nötig weil ldaps domain festgelegt. würde sonst starttls auf port 389 versuchen
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
};
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
|
||||
potential security risk potential security risk
should be nix path should be nix path
|
||||
services.nginx = {
|
||||
enable = true;
|
||||
virtualHosts."${config.services.portunus.domain}" = {
|
||||
|
|
|||
potential security risk potential security risk
should be nix path should be nix path
potential security risk potential security risk
should be nix path should be nix path
|
Loading…
Reference in a new issue
potential security risk
should be nix path