initial set up for zitadel module
This commit is contained in:
parent
ceed1a0cdf
commit
d5d46690ae
1 changed files with 68 additions and 0 deletions
68
modules/sercice/zitadel/default.nix
Normal file
68
modules/sercice/zitadel/default.nix
Normal file
|
|
@ -0,0 +1,68 @@
|
|||
{ ... }:
|
||||
{
|
||||
_class = "clan.service";
|
||||
|
||||
manifest.name = "zitadel";
|
||||
|
||||
roles = {
|
||||
controller = {
|
||||
interface = {
|
||||
options = {};
|
||||
};
|
||||
|
||||
perInstance = { instanceName, settings, machine, roles, ... }: {
|
||||
nixosModule = { config }: {
|
||||
config = {
|
||||
services.zitadel.steps.${instanceName} = {
|
||||
InstanceName = settings.hostName;
|
||||
|
||||
Org = {
|
||||
Name = settings.displayName;
|
||||
Human = {
|
||||
UserName = "chris";
|
||||
FirstName = "Chris";
|
||||
LastName = "Kruining";
|
||||
Email = {
|
||||
Address = "chris@kruining.eu";
|
||||
Verified = true;
|
||||
};
|
||||
Password = "KaasIsAwesome1!";
|
||||
};
|
||||
};
|
||||
};
|
||||
};
|
||||
};
|
||||
};
|
||||
};
|
||||
|
||||
peer = {};
|
||||
};
|
||||
|
||||
pweMachine = { instances, machine, ... }: {
|
||||
nixosModule = { config, ... }: {
|
||||
config = {
|
||||
services.zitadel = {
|
||||
enable = true;
|
||||
|
||||
settings = {
|
||||
Port = 9092;
|
||||
|
||||
ExternalDomain = "auth.amarth.cloud";
|
||||
ExternalPort = 443;
|
||||
ExternalSecure = true;
|
||||
|
||||
Metrics.Type = "otel";
|
||||
Tracing.Type = "otel";
|
||||
Telemetry.Enabled = true;
|
||||
|
||||
SystemDefaults = {
|
||||
PasswordHasher.Hasher.Algorithm = "argon2id";
|
||||
SecretHasher.Hasher.Algorithm = "argon2id";
|
||||
};
|
||||
|
||||
};
|
||||
};
|
||||
};
|
||||
};
|
||||
};
|
||||
}
|
||||
Loading…
Add table
Add a link
Reference in a new issue