fix: whitelist SSO

This commit is contained in:
decentral1se 2021-12-13 16:55:38 +01:00
parent 047dac8d21
commit 965809ce11
Signed by: decentral1se
GPG Key ID: 03789458B3D0C410
3 changed files with 8 additions and 1 deletions

View File

@ -20,6 +20,7 @@ COMPOSE_FILE="compose.yml"
#KEYCLOAK_NAME=
#KEYCLOAK_URL=
#KEYCLOAK_CLIENT_ID=
#KEYCLOAK_CLIENT_DOMAIN=
#SECRET_KEYCLOAK_CLIENT_SECRET_VERSION=v1
#COMPOSE_FILE="compose.yml:compose.turn.yml"

View File

@ -10,10 +10,11 @@ services:
- macaroon_secret_key
- registration_shared_secret
environment:
- KEYCLOAK_CLIENT_DOMAIN
- KEYCLOAK_CLIENT_ID
- KEYCLOAK_ENABLED
- KEYCLOAK_NAME
- KEYCLOAK_URL
- KEYCLOAK_CLIENT_ID
secrets:
keycloak_client_secret:

View File

@ -1948,6 +1948,11 @@ sso:
#client_whitelist:
# - https://riot.im/develop
# - https://my.custom.client/
{{ if eq (env "KEYCLOAK_ENABLED") "1" }}
client_whitelist:
- https://{{ env "KEYCLOAK_CLIENT_DOMAIN" }}
{{ end }}
# Uncomment to keep a user's profile fields in sync with information from
# the identity provider. Currently only syncing the displayname is