services: app: environment: - OIDC_ENABLE=TRUE - OIDC_CLIENT_ID - OIDC_CLIENT_SECRET_FILE=/run/secrets/oidc_client_secret - OIDC_AUTH_URL - OIDC_GROUPS_CLAIM - OIDC_ADMIN_GROUP - OIDC_EXTRA_SCOPE - OIDC_ONLY - OIDC_PROVIDER_NAME secrets: - oidc_client_secret secrets: oidc_client_secret: external: true name: ${STACK_NAME}_oidc_client_secret_${SECRET_OIDC_CLIENT_SECRET_VERSION}