Only oidc_client_secret is actually sensitive — issuer_url and client_id are now plain env vars. Renamed oidc_client_secret to oidc_secret to pass abra lint. Updated README with accurate quickstart and OIDC setup. Entrypoint guards git commands for min image compatibility.
7 lines
174 B
Cheetah
7 lines
174 B
Cheetah
{{ if env "OIDC_ENABLED" }}
|
|
[oidc]
|
|
issuer_url = "{{ env "OIDC_ISSUER_URL" }}"
|
|
client_id = "{{ env "OIDC_CLIENT_ID" }}"
|
|
client_secret = "{{ secret "oidc_secret" }}"
|
|
{{ end }}
|