Compare commits
2 Commits
Author | SHA1 | Date | |
---|---|---|---|
908d960f94 | |||
32e34db160 |
@ -4,7 +4,7 @@ module "authelia" {
|
|||||||
name = "authelia"
|
name = "authelia"
|
||||||
instance_count = 2
|
instance_count = 2
|
||||||
priority = 70
|
priority = 70
|
||||||
image = "authelia/authelia:4.37"
|
image = "authelia/authelia:4.38"
|
||||||
args = ["--config", "$${NOMAD_TASK_DIR}/authelia.yml"]
|
args = ["--config", "$${NOMAD_TASK_DIR}/authelia.yml"]
|
||||||
ingress = true
|
ingress = true
|
||||||
service_port = 9999
|
service_port = 9999
|
||||||
@ -172,7 +172,7 @@ resource "nomad_acl_auth_method" "nomad_authelia" {
|
|||||||
oidc_discovery_url = "https://authelia.${var.base_hostname}"
|
oidc_discovery_url = "https://authelia.${var.base_hostname}"
|
||||||
oidc_client_id = module.nomad_oidc_client.client_id
|
oidc_client_id = module.nomad_oidc_client.client_id
|
||||||
oidc_client_secret = module.nomad_oidc_client.secret
|
oidc_client_secret = module.nomad_oidc_client.secret
|
||||||
bound_audiences = ["nomad"]
|
bound_audiences = [module.nomad_oidc_client.client_id]
|
||||||
oidc_scopes = [
|
oidc_scopes = [
|
||||||
"groups",
|
"groups",
|
||||||
"openid",
|
"openid",
|
||||||
@ -190,7 +190,7 @@ resource "nomad_acl_auth_method" "nomad_authelia" {
|
|||||||
resource "nomad_acl_binding_rule" "nomad_authelia_admin" {
|
resource "nomad_acl_binding_rule" "nomad_authelia_admin" {
|
||||||
description = "engineering rule"
|
description = "engineering rule"
|
||||||
auth_method = nomad_acl_auth_method.nomad_authelia.name
|
auth_method = nomad_acl_auth_method.nomad_authelia.name
|
||||||
selector = "\"nomad-deploy\" in list.roles"
|
selector = "\"nomad-admin\" in list.roles"
|
||||||
bind_type = "role"
|
bind_type = "role"
|
||||||
bind_name = "admin" # acls.nomad_acl_role.admin.name
|
bind_name = "admin" # acls.nomad_acl_role.admin.name
|
||||||
}
|
}
|
||||||
|
Loading…
Reference in New Issue
Block a user