Compare commits

...

2 commits

Author SHA1 Message Date
195b44bc6b dependsa
All checks were successful
ansible-lint / gitleaks (pull_request) Successful in 5s
ansible-lint / Ansible Lint (pull_request) Successful in 40s
2024-11-10 16:56:55 +01:00
a92cf7f812 gfdff 2024-11-10 16:56:15 +01:00
3 changed files with 5 additions and 1 deletions

View file

@ -92,7 +92,7 @@ services:
retries: 3
labels:
traefik.http.routers.registry-ui.rule: Host(`registry.mgrote.net`)&&PathPrefix(`/ui`) # mache unter /ui erreichbar, damit wird demPfad dieser Prefix hinzugefügt, die Anwendung "hört" dort abrer nicht
traefik.http.routers.registry-ui.middlewares: registry-ui-strip-prefix,registry-ui-ipallowlist,authelia # also entferne den Prefix danach wieder
traefik.http.routers.registry-ui.middlewares: authelia,registry-ui-strip-prefix,registry-ui-ipallowlist # also entferne den Prefix danach wieder
traefik.http.middlewares.registry-ui-strip-prefix.stripprefix.prefixes: /ui # hier ist die Middleware definiert
traefik.enable: true
traefik.http.routers.registry-ui.tls: true

View file

@ -23,6 +23,7 @@ access_control:
policy: one_factor
subject:
- 'group:authelia_registry-ui'
session:
name: authelia_session
secret: {{ lookup('viczem.keepass.keepass', 'authelia/authelia_session_secret', 'password') }}

View file

@ -26,6 +26,8 @@ services:
interval: 30s
timeout: 10s
retries: 3
depends_on:
- authelia
######## authelia ########
authelia:
@ -51,6 +53,7 @@ services:
traefik.http.middlewares.authelia.forwardauth.authResponseHeaders: Remote-User,Remote-Groups,Remote-Name,Remote-Email
depends_on:
- authelia-redis
- authelia-db
networks:
- traefik
- postfix