28 lines
941 B
Bash
28 lines
941 B
Bash
# Obin AD User Creator runtime settings
|
|
# Copy real values into Portainer or /home/wheelz/.hermes/runtime-secrets/obin-ad-user-creator.env.
|
|
# Do not commit real passwords or invite codes.
|
|
|
|
APP_TITLE=Wheelytho Account Creation
|
|
MINIMUM_PASSWORD_LENGTH=12
|
|
# Keep this enabled for any public account-creation page.
|
|
APP_REQUIRE_INVITE_CODE=true
|
|
APP_INVITE_CODE=
|
|
|
|
WELCOME_URL=https://welcome.wheelytho.com/
|
|
AUTHELIA_SETUP_URL=https://auth.wheelytho.com/
|
|
|
|
# AD connection. Password set/reset requires LDAPS or StartTLS.
|
|
AD_LDAPS_URL=ldaps://192.168.30.15:636
|
|
AD_BIND_USERNAME=
|
|
AD_BIND_PASSWORD=
|
|
AD_BASE_DN=DC=local,DC=wheelz,DC=com
|
|
AD_CREATE_OU=OU=WheelzUsers,DC=local,DC=wheelz,DC=com
|
|
AD_DEFAULT_GROUPS=Authelia-Friends
|
|
AD_DOMAIN_UPN_SUFFIX=local.wheelz.com
|
|
|
|
# Temporarily false because the container does not yet trust the AD CA/root cert.
|
|
# Later hardening: add the AD CA cert and set true.
|
|
AD_TLS_VALIDATE=false
|
|
|
|
OBIN_AD_USER_CREATOR_PORT=8098
|