diff options
author | Elizabeth Hunt <me@liz.coffee> | 2025-03-23 21:35:03 -0700 |
---|---|---|
committer | Elizabeth Hunt <me@liz.coffee> | 2025-03-23 21:35:03 -0700 |
commit | aeab0e7c54e3995312490e7c4476f162b880f625 (patch) | |
tree | 5cc2e8cf3f5a121493ccf4a62787774f9f78fa12 /playbooks/roles/kanidm/templates | |
parent | e5eba51991a0640c6e5d1da0bd78cdbc9d4513f2 (diff) | |
download | infra-aeab0e7c54e3995312490e7c4476f162b880f625.tar.gz infra-aeab0e7c54e3995312490e7c4476f162b880f625.zip |
fix outbound stuff
Diffstat (limited to 'playbooks/roles/kanidm/templates')
-rw-r--r-- | playbooks/roles/kanidm/templates/stacks/docker-compose.yml | 4 | ||||
-rw-r--r-- | playbooks/roles/kanidm/templates/volumes/data/server.toml | 8 |
2 files changed, 6 insertions, 6 deletions
diff --git a/playbooks/roles/kanidm/templates/stacks/docker-compose.yml b/playbooks/roles/kanidm/templates/stacks/docker-compose.yml index 4ce98d2..8ba1c98 100644 --- a/playbooks/roles/kanidm/templates/stacks/docker-compose.yml +++ b/playbooks/roles/kanidm/templates/stacks/docker-compose.yml @@ -11,7 +11,7 @@ services: - /bin/sh - -c - | - [ ! -f "/certs/{{ kanidm_host }}.pem" ] && sleep 60 + [ ! -f "/certs/{{ idm_domain }}.pem" ] && sleep 60 /sbin/kanidmd server -c /data/server.toml healthcheck: disable: true @@ -24,7 +24,7 @@ services: - traefik.swarm.network=proxy - traefik.http.routers.kanidm.tls=true - traefik.http.routers.kanidm.tls.certResolver=letsencrypt - - traefik.http.routers.kanidm.rule=Host(`{{ kanidm_host }}`) + - traefik.http.routers.kanidm.rule=Host(`{{ idm_domain }}`) - traefik.http.routers.kanidm.entrypoints=websecure - traefik.http.services.kanidm.loadbalancer.server.port=8443 - traefik.http.services.kanidm.loadbalancer.server.scheme=https diff --git a/playbooks/roles/kanidm/templates/volumes/data/server.toml b/playbooks/roles/kanidm/templates/volumes/data/server.toml index 5e42bc8..75bd7c2 100644 --- a/playbooks/roles/kanidm/templates/volumes/data/server.toml +++ b/playbooks/roles/kanidm/templates/volumes/data/server.toml @@ -2,9 +2,9 @@ bindaddress = "0.0.0.0:8443" ldapbindaddress = "0.0.0.0:3636" trust_x_forward_for = true db_path = "/data/kanidm.db" -tls_chain = "/certs/{{ kanidm_host }}.pem" -tls_key = "/certs/{{ kanidm_host }}.key" +tls_chain = "/certs/{{ idm_domain }}.pem" +tls_key = "/certs/{{ idm_domain }}.key" log_level = "info" -domain = "{{ kanidm_host }}" -origin = "https://{{ kanidm_host }}" +domain = "{{ idm_domain }}" +origin = "https://{{ idm_domain }}" |