From c9117f6fd4d3c47f08a4855aedec644f39b7c5b3 Mon Sep 17 00:00:00 2001 From: wheelz Date: Mon, 24 Aug 2026 23:25:56 +0000 Subject: [PATCH] Configure Authelia SMTP2GO notifier --- authelia-smtp2go.env.template | 17 +++++++++++++++++ authelia-truenas-compose.yml | 10 ++++++++-- authelia-truenas.env.example | 11 +++++++++++ 3 files changed, 36 insertions(+), 2 deletions(-) create mode 100644 authelia-smtp2go.env.template diff --git a/authelia-smtp2go.env.template b/authelia-smtp2go.env.template new file mode 100644 index 0000000..7a58b3d --- /dev/null +++ b/authelia-smtp2go.env.template @@ -0,0 +1,17 @@ +# Authelia SMTP2GO worksheet/template +# Fill this in, then tell Hermes it is ready. +# IMPORTANT: do not commit this file after adding real SMTP credentials. + +SMTP2GO_HOST=mail.smtp2go.com +SMTP2GO_PORT=587 +SMTP2GO_USERNAME=wheelytho.com +SMTP2GO_PASSWORD= +SMTP2GO_SENDER_ADDRESS=auth@wheelytho.com +SMTP2GO_SENDER_NAME=Obin Auth +SMTP2GO_IDENTIFIER=auth.wheelz.lab +SMTP2GO_SUBJECT_PREFIX=[Obin Auth] + +# Optional notes/checks +SMTP2GO_DOMAIN=wheelytho.com +SMTP2GO_DNS_VERIFIED=true +SMTP2GO_TEST_RECIPIENT=wheelz@wheelytho.com diff --git a/authelia-truenas-compose.yml b/authelia-truenas-compose.yml index 420fddb..0d5b45c 100644 --- a/authelia-truenas-compose.yml +++ b/authelia-truenas-compose.yml @@ -94,8 +94,7 @@ services: path: /config/db.sqlite3 notifier: - filesystem: - filename: /config/notification.txt + smtp: {} identity_validation: reset_password: @@ -173,6 +172,13 @@ services: # Active Directory LDAP bind password. The live configuration.yml references this # through Authelia's env override; do not commit the real value. AUTHELIA_AUTHENTICATION_BACKEND_LDAP_PASSWORD: ${AD_BIND_PASSWORD:?set AD_BIND_PASSWORD in runtime env} + # SMTP2GO notifier for hands-off Authelia MFA/device-registration emails. + AUTHELIA_NOTIFIER_SMTP_ADDRESS: submission://${SMTP2GO_HOST:-mail.smtp2go.com}:${SMTP2GO_PORT:-587} + AUTHELIA_NOTIFIER_SMTP_USERNAME: ${SMTP2GO_USERNAME:?set SMTP2GO_USERNAME in runtime env} + AUTHELIA_NOTIFIER_SMTP_PASSWORD: ${SMTP2GO_PASSWORD:?set SMTP2GO_PASSWORD in runtime env} + AUTHELIA_NOTIFIER_SMTP_SENDER: ${SMTP2GO_SENDER_NAME:-Obin Auth} <${SMTP2GO_SENDER_ADDRESS:-auth@wheelytho.com}> + AUTHELIA_NOTIFIER_SMTP_IDENTIFIER: ${SMTP2GO_IDENTIFIER:-auth.wheelz.lab} + AUTHELIA_NOTIFIER_SMTP_SUBJECT: ${SMTP2GO_SUBJECT_PREFIX:-[Obin Auth]} {title} volumes: - ${TRUENAS_DOCKER_ROOT:-/mnt/HomeStorage02/Docker}/Authelia/config:/config security_opt: diff --git a/authelia-truenas.env.example b/authelia-truenas.env.example index 8704cf3..533bd9b 100644 --- a/authelia-truenas.env.example +++ b/authelia-truenas.env.example @@ -36,3 +36,14 @@ LLDAP_KEY_SEED=replace-with-random-secret # Active Directory LDAP backend used by Authelia after AD cutover. # Keep the real bind password only in Portainer/runtime secrets, never in Gitea. AD_BIND_PASSWORD=replace-with-ad-bind-password + +# SMTP2GO notifier used by Authelia for MFA/device-registration and identity emails. +# Keep the real SMTP password only in Portainer/runtime secrets, never in Gitea. +SMTP2GO_HOST=mail.smtp2go.com +SMTP2GO_PORT=587 +SMTP2GO_USERNAME=replace-with-smtp2go-smtp-username +SMTP2GO_PASSWORD=replace-with-smtp2go-smtp-password +SMTP2GO_SENDER_ADDRESS=auth@wheelytho.com +SMTP2GO_SENDER_NAME=Obin Auth +SMTP2GO_IDENTIFIER=auth.wheelz.lab +SMTP2GO_SUBJECT_PREFIX=[Obin Auth]