nix machine / user configurations

feat(wolumonde): make perses use pocket id [skip ci]

ptr.pet a2df5c7f 4988497d

verified
Changed files
+23 -17
hosts
wolumonde
modules
secrets
+7 -1
hosts/wolumonde/modules/perses.nix
···
security = {
enable_auth = true;
authentication = {
-
providers.enable_native = true;
+
providers.oidc = [{
+
slug_id = "pocketid";
+
name = "Pocket ID";
+
client_id = "aa583db6-e03c-4490-853a-7f2b3e089fbe";
+
issuer = config.services.pocket-id.settings.APP_URL;
+
scopes = ["openid profile email"];
+
}];
disable_sign_up = true;
};
cookie = {
+1 -1
hosts/wolumonde/modules/perses/provision/3-admin-bind-role.yaml
···
role: admin
subjects:
- kind: User
-
name: admin
+
name: 90008
secrets/persesAdminUser.age

This is a binary file and will not be displayed.

+15 -15
secrets/persesSecret.age
···
age-encryption.org/v1
-> ssh-rsa Abmvag
-
m9rvMDY0//fvWMw3GRys+l+aaEvvzD2oBuGuKUEp8ENy8g7o3d5ZyZD6tvJJj6n9
-
cDCRwe00Ouq6skWb5k3H2kQgSwTRdK+6lCTH5Ob7/co7ALDTr/80NNs4KInX8Y/R
-
rMXxuareDyTFpV+shsRE37IMpG3mZ1zWnP25UkkTo27WbgqVjon7Ps7hf259PUuB
-
lNdeAFqztdD0LYlOfmgEIJwA2BSCDfZ8HqT5Ur3wTXrcRZ6Mb/Llzu2xLlONMJn8
-
EgeYxJasZrMjCVGWMS/N1LPBafX7SOn1meWUZhC1UeClWSghjHNODy6kelD/A7iC
-
jgk8IGIABZtykm8Wcw3tmSX3dTr6AE1RHkBcgAVfUNkzX5UibzmLL34RN8I98E+y
-
r8sZDz57HKrD9dtzQLIHo/YSyYvYy+l7Z7NtfklH+6FI+Nf+5YoKs95C9yKuRPYs
-
zaaUrbZ1F+T+5ls0F+OMX4TYxrXk98zY6b5maTkTu69U4B0iXMifdVN59W+pPXVg
-
MnXPO3+aDVLf3erMmGvvu6P9CaMHUYq8aSbKl5VePljSZdaMRjS38NzDyBcP3P1D
-
697o07GFl7dJyu9wmekbUHxQ1aRxqK7C29SCcfpS8ILArMQKUsydOlX1fmGJ41Sy
-
MaDVv3LNMAJ0VCRl/NV0StN2/S0rKsQrzhqvgcPDGWk
-
-> ssh-ed25519 KjIL7g NX9hJn33MHHlO/OB5DeIdCGMyBJlpwpO/Sjr8EGh6VM
-
zB6KNpwaF7EOSXFrLfPFqpd9Xq72rA7Ev5HlTn1wIew
-
--- iJi+UsYDkTmE1N9GDS06jevltPbQ1yZaFI6ukEiWN+c
-
\�;Cb_]۪���l9���L�8���c���uY͛-��2�l��:V-����J�fn��������ڴʙ��ɲ�Z�G%��hޅ{�U�V�f�(U�
+
oA9+rRHwGJJ2TiR2+GqE4HofvQJzWI1n0Rppl7itE/QGVmzo8Kq2Qh3XSkb2jCzT
+
1k1M2cHdIB/2XF1htn0lQp5uA6s+NO66T9hjniJulzZ5xLem7sNOFl/JSbCuYnb+
+
QI4sCiZhuqGD6SEQhHpwzMEttml9rI1xpYJ+o/kqGkmOOIqzkZYQh2duYYEl6dhn
+
5Hi+CEve3Cz9XkFnzaADWgzgsMtSG3MdqvTm2C9x3lAGCRlC3LrzfRB8GlwGalqU
+
ecPui7CyqQlPQO6Uq+fl+wPyHqqeZk0Y1uIXxMsjsIiO3a5rMQDLFjalsNlENZ/E
+
KZBgYueuUcJGUHx4N+tjDubsR4XK6nlPIdIVNwrwghWQY/dtH7KW9iW3i53vRfwV
+
CICagM6s8ZUIkSLOxGrxOeY8iXJnRMaWvyZNrSgulP+5YUkw5gPOLxtNFGmZzqzk
+
tTunLg8Sq2ODvY3cob4YtNkjrfy0VNeQiOPvNB/Dq0f98qva3LgHrCL2IFTfW6Oi
+
pPmq7qaliqYKLCyNMZr1J/G21yEY04Rdook/0O23Q17vN5bqzHWPI7AALVz/wPVW
+
GR9JDb51aE580CN5F4d6NFLCXzGORkMK4RpsmhLR7S/ZlrO2j7ogp4gxiNsIO/ag
+
ERe1TYzt6isXlW04jaJvr/rsPZEcDCAhLJSXfVCe2ww
+
-> ssh-ed25519 KjIL7g spE6zz6WOstZj+lFRjzyS4shiP4pN0zcsH1f2Lqu9CQ
+
3L1pC1NLl0H1Yj0tqsx+4SFrlm+We5U4PTOgkC8NQ2U
+
--- bnFtsqx/Mjo9vgpzn/WvhM2Va4onBW65d82hxjk6rA4
+
�3' &x_���e��h��c�o�P�J�j�g�ϸY5ڍ6��O]Δ@�M�Iϟ������Z%[c��)�,&�����w�� O�f@|H��@�9�