forgejo: create ldap groups
This commit is contained in:
parent
9bb097fec1
commit
b5015b1c56
1 changed files with 7 additions and 0 deletions
|
|
@ -44,6 +44,7 @@ in
|
||||||
{
|
{
|
||||||
imports = [
|
imports = [
|
||||||
../blocks/nginx.nix
|
../blocks/nginx.nix
|
||||||
|
../blocks/lldap.nix
|
||||||
|
|
||||||
(lib.mkRemovedOptionModule [ "shb" "forgejo" "adminPassword" ] ''
|
(lib.mkRemovedOptionModule [ "shb" "forgejo" "adminPassword" ] ''
|
||||||
Instead, define an admin user in shb.forgejo.users and give it the same password, like so:
|
Instead, define an admin user in shb.forgejo.users and give it the same password, like so:
|
||||||
|
|
@ -470,6 +471,12 @@ in
|
||||||
(mkIf (cfg.enable && cfg.ldap.enable != false) {
|
(mkIf (cfg.enable && cfg.ldap.enable != false) {
|
||||||
systemd.services.forgejo.wants = cfg.ldap.waitForSystemdServices;
|
systemd.services.forgejo.wants = cfg.ldap.waitForSystemdServices;
|
||||||
systemd.services.forgejo.after = cfg.ldap.waitForSystemdServices;
|
systemd.services.forgejo.after = cfg.ldap.waitForSystemdServices;
|
||||||
|
|
||||||
|
shb.lldap.ensureGroups = {
|
||||||
|
${cfg.ldap.adminGroup} = { };
|
||||||
|
${cfg.ldap.userGroup} = { };
|
||||||
|
};
|
||||||
|
|
||||||
# The delimiter in the `cut` command is a TAB!
|
# The delimiter in the `cut` command is a TAB!
|
||||||
systemd.services.forgejo.preStart =
|
systemd.services.forgejo.preStart =
|
||||||
let
|
let
|
||||||
|
|
|
||||||
Loading…
Reference in a new issue