summaryrefslogtreecommitdiff
path: root/hosts/cloud/proxy/authentik.nix
diff options
context:
space:
mode:
authorGrigory Shipunov2025-01-14 21:24:05 +0000
committerGrigory Shipunov2025-01-19 19:21:43 +0000
commit5c3f0886e592ff2d3e3a8588ab496f36c19e0ce9 (patch)
tree53593dfbed713fe889cd533c1bd38506c1a09bfa /hosts/cloud/proxy/authentik.nix
parent2f2318aaaa6745cdf3a58142b988b2550bf6b952 (diff)
yeet authentik, add keycloak and radicale
Diffstat (limited to 'hosts/cloud/proxy/authentik.nix')
-rw-r--r--hosts/cloud/proxy/authentik.nix31
1 files changed, 0 insertions, 31 deletions
diff --git a/hosts/cloud/proxy/authentik.nix b/hosts/cloud/proxy/authentik.nix
deleted file mode 100644
index c6c9685..0000000
--- a/hosts/cloud/proxy/authentik.nix
+++ /dev/null
@@ -1,31 +0,0 @@
-# TODO: integrade with oxalab-wg
-{ config, ... }:
-{
- # authentik
- services.nginx.upstreams.authentik = {
- extraConfig = ''
- keepalive 10;
- '';
- servers =
- {
- "10.89.88.2:9000" = { };
- "[fd31:185d:722f::2]:9000" = { };
- };
- };
-
- services.nginx.virtualHosts."sso.oxapentane.com" = {
- forceSSL = true;
- enableACME = true;
- locations."/" = {
- proxyWebsockets = true;
- proxyPass = "http://authentik";
- extraConfig = ''
- proxy_set_header X-Forwarded-Proto $scheme;
- proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
- proxy_set_header Host $host;
- proxy_set_header Upgrade $http_upgrade;
- proxy_set_header Connection $connection_upgrade;
- '';
- };
- };
- }