# Production Environment Variables # Copy to .env and fill in all values # Domain Configuration ROOT_DOMAIN=example.com ACME_EMAIL=admin@example.com # Database POSTGRES_USER=headquarter POSTGRES_PASSWORD=change-me-in-production POSTGRES_DB=headquarter # Authentik OIDC AUTHENTIK_ISSUER_URL=https://auth.example.com/application/o/headquarter/ AUTHENTIK_CLIENT_ID=headquarter-api AUTHENTIK_CLIENT_SECRET=change-me-in-production # API Configuration SECRET_ENCRYPTION_KEY=change-me-in-production ACCESS_TOKEN_EXPIRE_MINUTES=60 # Deployment TRAEFIK_NETWORK=traefik TRAEFIK_LOG_LEVEL=INFO TRAEFIK_ENTRYPOINT=websecure TRAEFIK_CERT_RESOLVER=letsencrypt API_TAG=latest WEB_TAG=latest REGISTRY=ghcr.io REPO=headquarter # Frontend build-time variables VITE_API_URL=https://api.example.com VITE_OIDC_ISSUER=https://auth.example.com/application/o/headquarter/ VITE_OIDC_CLIENT_ID=headquarter-web