Rip out tfa for now
This commit is contained in:
parent
efff580100
commit
38a49cb764
@ -1,13 +0,0 @@
|
|||||||
secret = {{ secret "secret-nonce-v1" }}
|
|
||||||
|
|
||||||
default-provider = oidc
|
|
||||||
|
|
||||||
providers.oidc.issuer-url = {{ secret "oidc-issuer-url-v1" }}
|
|
||||||
providers.oidc.client-id = {{ secret "oidc-client-id-v1" }}
|
|
||||||
providers.oidc.client-secret = {{ secret "oidc-client-secret-v1" }}
|
|
||||||
|
|
||||||
log-level = error
|
|
||||||
|
|
||||||
cookie-domain = swarm.autonomic.zone
|
|
||||||
|
|
||||||
auth-host = auth.swarm.autonomic.zone
|
|
@ -35,29 +35,6 @@ services:
|
|||||||
- "traefik.http.routers.traefik.service=api@internal"
|
- "traefik.http.routers.traefik.service=api@internal"
|
||||||
- "traefik.http.routers.traefik.middlewares=keycloak@file"
|
- "traefik.http.routers.traefik.middlewares=keycloak@file"
|
||||||
|
|
||||||
traefik-forward-auth:
|
|
||||||
image: thomseddon/traefik-forward-auth:2
|
|
||||||
configs:
|
|
||||||
- source: forward-ini-prod-v1
|
|
||||||
target: /etc/forward.ini
|
|
||||||
networks:
|
|
||||||
- proxy
|
|
||||||
environment:
|
|
||||||
- CONFIG=/etc/forward.ini
|
|
||||||
secrets:
|
|
||||||
- oidc-client-id-v1
|
|
||||||
- oidc-client-secret-v1
|
|
||||||
- oidc-issuer-url-v1
|
|
||||||
- secret-nonce-v1
|
|
||||||
deploy:
|
|
||||||
labels:
|
|
||||||
- "traefik.enable=true"
|
|
||||||
- "traefik.http.services.tfa.loadBalancer.server.port=4181"
|
|
||||||
- "traefik.http.routers.tfa.rule=Host(`auth.swarm.autonomic.zone`)"
|
|
||||||
- "traefik.http.routers.tfa.entrypoints=web-secure"
|
|
||||||
- "traefik.http.routers.tfa.tls.certresolver=staging"
|
|
||||||
- "traefik.http.routers.tfa.middlewares=keycloak@file"
|
|
||||||
|
|
||||||
networks:
|
networks:
|
||||||
proxy:
|
proxy:
|
||||||
external: true
|
external: true
|
||||||
@ -67,19 +44,6 @@ configs:
|
|||||||
file: configs/prod/traefik.yml
|
file: configs/prod/traefik.yml
|
||||||
file-provider-prod-v1:
|
file-provider-prod-v1:
|
||||||
file: configs/prod/file-provider.yml
|
file: configs/prod/file-provider.yml
|
||||||
forward-ini-prod-v1:
|
|
||||||
file: configs/prod/forward.ini.tmpl
|
|
||||||
template_driver: golang
|
|
||||||
|
|
||||||
secrets:
|
|
||||||
secret-nonce-v1:
|
|
||||||
external: true
|
|
||||||
oidc-issuer-url-v1:
|
|
||||||
external: true
|
|
||||||
oidc-client-id-v1:
|
|
||||||
external: true
|
|
||||||
oidc-client-secret-v1:
|
|
||||||
external: true
|
|
||||||
|
|
||||||
volumes:
|
volumes:
|
||||||
letsencrypt:
|
letsencrypt:
|
||||||
|
Reference in New Issue
Block a user