nextcloud: allow to set sso integration without ldap
This commit is contained in:
parent
a536ee141e
commit
6d0ee7494f
1 changed files with 1 additions and 4 deletions
|
|
@ -1065,10 +1065,6 @@ in
|
||||||
];
|
];
|
||||||
in lib.mkIf (cfg.enable && cfg.apps.sso.enable) {
|
in lib.mkIf (cfg.enable && cfg.apps.sso.enable) {
|
||||||
assertions = [
|
assertions = [
|
||||||
{
|
|
||||||
assertion = cfg.apps.ldap.enable;
|
|
||||||
message = "SSO app requires LDAP app to work correctly.";
|
|
||||||
}
|
|
||||||
{
|
{
|
||||||
assertion = cfg.ssl != null;
|
assertion = cfg.ssl != null;
|
||||||
message = "To integrate SSO, SSL must be enabled, set the shb.nextcloud.ssl option.";
|
message = "To integrate SSO, SSL must be enabled, set the shb.nextcloud.ssl option.";
|
||||||
|
|
@ -1128,6 +1124,7 @@ in
|
||||||
groups = "groups";
|
groups = "groups";
|
||||||
is_admin = "is_nextcloud_admin";
|
is_admin = "is_nextcloud_admin";
|
||||||
};
|
};
|
||||||
|
oidc_login_allowed_groups = [ cfg.apps.ldap.userGroup ];
|
||||||
oidc_login_default_group = "oidc";
|
oidc_login_default_group = "oidc";
|
||||||
oidc_login_use_external_storage = false;
|
oidc_login_use_external_storage = false;
|
||||||
oidc_login_scope = lib.concatStringsSep " " scopes;
|
oidc_login_scope = lib.concatStringsSep " " scopes;
|
||||||
|
|
|
||||||
Loading…
Reference in a new issue