d724a92d34
- Replace JWT config with SESSION_SECRET and SESSION_TTL_HOURS - Remove AUTHENTIK_JWKS_URL, ISSUER, AUDIENCE (no longer needed) - Update docker-compose.traefik.yml environment variables
50 lines
1.5 KiB
Bash
50 lines
1.5 KiB
Bash
# Database Configuration
|
|
POSTGRES_USER=headquarter
|
|
POSTGRES_PASSWORD=change-me-in-production
|
|
POSTGRES_DB=headquarter
|
|
|
|
# Redis Configuration
|
|
REDIS_URL=redis://redis:6379/0
|
|
|
|
# Session Configuration
|
|
SESSION_SECRET=change-me-in-production
|
|
SESSION_TTL_HOURS=24
|
|
|
|
# Application Configuration
|
|
APP_ENV=development
|
|
DEBUG=true
|
|
LOG_LEVEL=info
|
|
REPO_BASE_PATH=/data/repos
|
|
|
|
# Domain Configuration (for both development and traefik modes)
|
|
API_DOMAIN=localhost
|
|
WEB_DOMAIN=localhost
|
|
AUTHENTIK_DOMAIN=authentik.local
|
|
|
|
# Public URLs (optional - will be constructed from domains if not set)
|
|
# API_PUBLIC_URL=https://api.example.com
|
|
# WEB_PUBLIC_URL=https://app.example.com
|
|
|
|
# Authentik Configuration
|
|
# Client ID: The OAuth client ID from Authentik (may be a UUID)
|
|
AUTHENTIK_CLIENT_ID=headquarter-web
|
|
AUTHENTIK_CLIENT_SECRET=change-me
|
|
# Application Slug: The URL-friendly identifier used in Authentik URLs
|
|
# This is often the same as the application identifier/slug in Authentik
|
|
# e.g., if your Authentik app URL is /application/o/headquarter-web/, use "headquarter-web"
|
|
AUTHENTIK_APPLICATION_SLUG=headquarter-web
|
|
# Override Authentik URLs if they differ from the default pattern
|
|
# AUTHENTIK_AUTHORIZE_URL=https://authentik.example.com/application/o/authorize/
|
|
# AUTHENTIK_TOKEN_URL=https://authentik.example.com/application/o/token/
|
|
|
|
# Frontend Configuration
|
|
VITE_API_BASE_URL=http://localhost:8000
|
|
VITE_APP_URL=http://localhost:3000
|
|
|
|
# Docker Configuration
|
|
COMPOSE_PROJECT_NAME=headquarter
|
|
|
|
# Traefik Configuration (for docker-compose.traefik.yml)
|
|
# PROXY_WEB_NAME=headquarter-web
|
|
# TRAEFIK_NETWORK=traefik
|