draft: partially getting authentik to work
Check / Nix flake (push) Failing after 8s
Lint / Nix expressions (push) Failing after 9s

needs manual systemctl start once booted for now

its started at auth.tuxcord.test
This commit is contained in:
2026-05-05 00:02:34 +02:00
parent 82c76dc390
commit 833a21b1c1
8 changed files with 328 additions and 13 deletions
+17
View File
@@ -0,0 +1,17 @@
{ config, self, ... }:
let
inherit (config.networking) fqdn;
in
{
age.secrets.authentik.file = "${self}/agenix/authentik.age";
services.authentik = {
enable = true;
environmentFile = config.age.secrets.authentik.path; # just trust, this specifies port 3001
# nginx = {
# enable = true;
# enableACME = true;
# host = "auth.${fqdn}";
# };
};
}
+1
View File
@@ -1,6 +1,7 @@
{
imports = [
./acme.nix
./authentik.nix
./dns.nix
./fail2ban.nix
./gitea.nix
+4
View File
@@ -60,6 +60,10 @@ in
"git.${fqdn}" = mkVhost { } {
"/" = mkProxy config.services.gitea.settings.server.HTTP_PORT;
};
"auth.${fqdn}" = mkVhost { } {
"/" = mkProxy 3001;
};
};
};