forked from coop-cloud/rauthy
49 lines
1.1 KiB
Cheetah
49 lines
1.1 KiB
Cheetah
# PLEASE UPDATE THIS LINK WHEN UPGRADING RECIPE VERSION
|
|
# https://github.com/sebadob/rauthy/blob/v0.31.1/config.toml
|
|
|
|
[bootstrap]
|
|
admin_email = '{{ env "ADMIN_EMAIL" }}'
|
|
|
|
[cluster]
|
|
node_id = 1
|
|
secret_raft = '{{ secret "hql_raft" }}'
|
|
secret_api = '{{ secret "hql_api" }}'
|
|
|
|
{{ if eq (env "SMTP_ENABLED") "1" }}
|
|
[email]
|
|
rauthy_admin_email = '{{ env "ADMIN_EMAIL" }}'
|
|
sub_prefix = '{{ env "EMAIL_SUB_PREFIX" }}'
|
|
smtp_url = '{{ env "SMTP_URL" }}'
|
|
smtp_username = '{{ env "SMTP_USERNAME" }}'
|
|
smtp_password = '{{ secret "smtp_password" }}'
|
|
smtp_from = '{{ env "SMTP_FROM" }}'
|
|
starttls_only = {{ or (env "SMTP_STARTTLS_ONLY") "false" }}
|
|
{{ end }}
|
|
|
|
[logging]
|
|
level = '{{ env "LOG_LEVEL" }}'
|
|
|
|
[encryption]
|
|
keys = [
|
|
'{{ env "SECRET_ENC_KEYS_A_VERSION" }}/{{ secret "enc_keys_a" }}',
|
|
'{{ env "SECRET_ENC_KEYS_B_VERSION" }}/{{ secret "enc_keys_b" }}'
|
|
]
|
|
key_active = '{{ env "ENC_KEY_ACTIVE" }}'
|
|
|
|
[mfa]
|
|
admin_force_mfa = {{ env "ADMIN_FORCE_MFA" }}
|
|
|
|
[server]
|
|
pub_url = '{{ env "DOMAIN" }}'
|
|
scheme = 'http'
|
|
proxy_mode = true
|
|
trusted_proxies = [
|
|
'127.0.0.1',
|
|
'172.16.0.0/12',
|
|
'10.0.0.0/8'
|
|
]
|
|
|
|
[webauthn]
|
|
rp_id = '{{ env "DOMAIN" }}'
|
|
rp_origin = 'https://{{ env "DOMAIN" }}:443'
|