0509b9eb4a
Authentik uses different values for: - OAuth Client ID (UUID for authentication) - Application Slug (URL-friendly identifier like 'headquarter-web') Add AUTHENTIK_APPLICATION_SLUG config to build correct Authentik URLs while keeping AUTHENTIK_CLIENT_ID for OAuth token exchange.
54 lines
1.8 KiB
Bash
54 lines
1.8 KiB
Bash
# Database Configuration
|
|
POSTGRES_USER=headquarter
|
|
POSTGRES_PASSWORD=change-me-in-production
|
|
POSTGRES_DB=headquarter
|
|
|
|
# Redis Configuration
|
|
REDIS_URL=redis://redis:6379/0
|
|
|
|
# JWT Configuration
|
|
JWT_SECRET=change-me-in-production
|
|
JWT_ALGORITHM=HS256
|
|
JWT_EXPIRATION_HOURS=24
|
|
|
|
# Application Configuration
|
|
APP_ENV=development
|
|
DEBUG=true
|
|
LOG_LEVEL=info
|
|
REPO_BASE_PATH=/data/repos
|
|
|
|
# Domain Configuration (for both development and traefik modes)
|
|
API_DOMAIN=localhost
|
|
WEB_DOMAIN=localhost
|
|
AUTHENTIK_DOMAIN=authentik.local
|
|
|
|
# Public URLs (optional - will be constructed from domains if not set)
|
|
# API_PUBLIC_URL=https://api.example.com
|
|
# WEB_PUBLIC_URL=https://app.example.com
|
|
|
|
# Authentik Configuration
|
|
# Client ID: The OAuth client ID from Authentik (may be a UUID)
|
|
AUTHENTIK_CLIENT_ID=headquarter-web
|
|
AUTHENTIK_CLIENT_SECRET=change-me
|
|
# Application Slug: The URL-friendly identifier used in Authentik URLs
|
|
# This is often the same as the application identifier/slug in Authentik
|
|
# e.g., if your Authentik app URL is /application/o/headquarter-web/, use "headquarter-web"
|
|
AUTHENTIK_APPLICATION_SLUG=headquarter-web
|
|
# Override Authentik URLs if they differ from the default pattern
|
|
# AUTHENTIK_AUTHORIZE_URL=https://authentik.example.com/application/o/authorize/
|
|
# AUTHENTIK_TOKEN_URL=https://authentik.example.com/application/o/token/
|
|
# AUTHENTIK_JWKS_URL=https://authentik.example.com/application/o/headquarter-web/jwks/
|
|
# AUTHENTIK_ISSUER=https://authentik.example.com/application/o/headquarter-web/
|
|
AUTHENTIK_AUDIENCE=headquarter-web
|
|
|
|
# Frontend Configuration
|
|
VITE_API_BASE_URL=http://localhost:8000
|
|
VITE_APP_URL=http://localhost:3000
|
|
|
|
# Docker Configuration
|
|
COMPOSE_PROJECT_NAME=headquarter
|
|
|
|
# Traefik Configuration (for docker-compose.traefik.yml)
|
|
# PROXY_WEB_NAME=headquarter-web
|
|
# TRAEFIK_NETWORK=traefik
|