@@ -68,6 +68,8 @@ in
|
||||
identity_validation.reset_password.jwt_secret =
|
||||
hmConfig.sops.placeholder."authelia/resetPasswordJwt";
|
||||
|
||||
definitions.user_attributes.is_admin.expression = "\"admins\" in groups";
|
||||
|
||||
identity_providers.oidc = {
|
||||
hmac_secret = hmConfig.sops.placeholder."authelia/oidcHmac";
|
||||
|
||||
@@ -94,6 +96,11 @@ in
|
||||
];
|
||||
};
|
||||
};
|
||||
|
||||
claims_policies.is_admin.custom_claims.is_admin = { };
|
||||
|
||||
# FIXME: Add scope description
|
||||
scopes.is_admin.claims = [ "is_admin" ];
|
||||
};
|
||||
|
||||
storage = {
|
||||
@@ -128,9 +135,10 @@ in
|
||||
email = "nick@karaolidis.com";
|
||||
groups = [
|
||||
"admins"
|
||||
"git"
|
||||
"docs"
|
||||
"gitea"
|
||||
"outline"
|
||||
"vaultwarden"
|
||||
"nextcloud"
|
||||
];
|
||||
};
|
||||
}
|
||||
|
Reference in New Issue
Block a user