- Update vault.example.yml with current secret structure - Enhance gen-auth-secrets.sh for improved OIDC client generation
47 lines
1.2 KiB
YAML
47 lines
1.2 KiB
YAML
---
|
|
GRAFANA_ADMIN_PASSWORD:
|
|
POSTGRES_PASSWORD:
|
|
S3_ACCESS_KEY_ID:
|
|
S3_SECRET_ACCESS_KEY:
|
|
TF_VAR_linode_token:
|
|
TF_VAR_root_pass:
|
|
TF_VAR_user_password:
|
|
TF_VAR_ssh_public_key:
|
|
CF_DNS_API_TOKEN:
|
|
CF_ZONE_API_TOKEN:
|
|
LLDAP_ADMIN_PASSWORD:
|
|
LLDAP_JWT_SECRET:
|
|
LLDAP_KEY_SEED:
|
|
AUTHELIA_IDENTITY_VALIDATION_RESET_PASSWORD_JWT_SECRET:
|
|
AUTHELIA_SESSION_SECRET:
|
|
AUTHELIA_STORAGE_ENCRYPTION_KEY:
|
|
AUTHELIA_OIDC_HMAC_SECRET:
|
|
AUTHELIA_OIDC_PRIVATE_KEY_PEM:
|
|
AUTHELIA_OIDC_GRAFANA_CLIENT_SECRET:
|
|
AUTHELIA_OIDC_FORGEJO_CLIENT_SECRET:
|
|
AUTHELIA_SMTP_ADDRESS:
|
|
AUTHELIA_SMTP_USERNAME:
|
|
AUTHELIA_SMTP_PASSWORD:
|
|
AUTHELIA_SMTP_SENDER:
|
|
AUTHELIA_SMTP_IDENTIFIER:
|
|
AUTHELIA_SMTP_STARTUP_CHECK_ADDRESS:
|
|
# POSTFIX_RELAYHOST:
|
|
# POSTFIX_RELAYHOST_USERNAME:
|
|
# POSTFIX_RELAYHOST_PASSWORD:
|
|
FORGEJO_RUNNER_REGISTRATION_TOKEN:
|
|
FORGEJO_API_TOKEN:
|
|
FORGEJO_BASE_URL:
|
|
FORGEJO_RUNNER_REGISTRATION_TOKEN:
|
|
SERVICE_SSH_REGISTER_PUBLIC_KEY:
|
|
SERVICE_SSH_DEREGISTER_PUBLIC_KEY:
|
|
|
|
RESTIC_PASSWORD:
|
|
RESTIC_AWS_ACCESS_KEY_ID:
|
|
RESTIC_AWS_SECRET_ACCESS_KEY:
|
|
RESTIC_AWS_DEFAULT_REGION:
|
|
|
|
ALERTMANAGER_SLACK_WEBHOOK_URL:
|
|
ALERTMANAGER_DISCORD_WEBHOOK_URL:
|
|
|
|
# Deployment token for webhook authentication (must match DEPLOY_TOKEN secret in app repos)
|
|
VAULT_DEPLOY_TOKEN:
|