Compare commits

...

3 Commits

Author SHA1 Message Date
ab 6c13aec9c1 Disable authentik CI
Terraform / Terraform (push) Has been skipped
Update Kubernetes Services Wiki / Generate and Update K8s Wiki (push) Successful in 6s
2026-05-06 10:13:27 +01:00
Ultradesu f04c8d7359 fix grafana
Update Kubernetes Services Wiki / Generate and Update K8s Wiki (push) Successful in 7s
Check with kubeconform / lint (push) Successful in 7s
Auto-update README / Generate README and Create MR (push) Successful in 13s
2026-05-05 19:40:00 +01:00
Ultradesu b5906b613a fix grafana
Update Kubernetes Services Wiki / Generate and Update K8s Wiki (push) Successful in 7s
Check with kubeconform / lint (push) Successful in 7s
Auto-update README / Generate README and Create MR (push) Successful in 10s
2026-05-05 19:33:41 +01:00
3 changed files with 12 additions and 20 deletions
+1
View File
@@ -13,6 +13,7 @@ permissions:
jobs:
terraform:
name: 'Terraform'
if: false
runs-on: ubuntu-latest
environment: production
+11 -3
View File
@@ -109,6 +109,7 @@ grafana:
grafana.ini:
auth:
signout_redirect_url: https://auth.hexor.cy/auth/realms/hexor/protocol/openid-connect/logout?post_logout_redirect_uri=https%3A%2F%2Fgf.hexor.cy%2Flogin&client_id=Grafana
oauth_allow_insecure_email_lookup: true
auth.generic_oauth:
name: Keycloak
enabled: true
@@ -117,10 +118,17 @@ grafana:
auth_url: https://auth.hexor.cy/auth/realms/hexor/protocol/openid-connect/auth
token_url: https://auth.hexor.cy/auth/realms/hexor/protocol/openid-connect/token
api_url: https://auth.hexor.cy/auth/realms/hexor/protocol/openid-connect/userinfo
# #contains(groups, 'Grafana Editors') && 'Editor' ||
email_attribute_path: email
login_attribute_path: preferred_username
name_attribute_path: name
role_attribute_path: >-
contains(groups, 'hexor-admin') && 'Admin' ||
contains(groups, 'hexor-guest') && 'Viewer'
contains(groups[*], 'hexor-admin') && 'Admin' ||
contains(groups[*], 'hexor-guest') && 'Viewer' ||
'Viewer'
role_attribute_strict: false
log:
level: debug
filters: "oauth.generic_oauth:debug"
database:
type: postgres
host: psql.psql.svc:5432
@@ -43,23 +43,6 @@ proxy_applications = {
access_groups = ["admins"]
}
"kubernetes-secrets" = {
name = "kubernetes-secrets"
slug = "k8s-secret"
group = "Core"
external_host = "https://pass.hexor.cy"
internal_host = "http://secret-reader.k8s-secret.svc:80"
internal_host_ssl_validation = false
meta_description = ""
skip_path_regex = <<-EOT
/webhook
EOT
meta_icon = "https://img.icons8.com/ios-filled/50/password.png"
mode = "proxy"
outpost = "kubernetes-outpost"
create_group = true
access_groups = ["admins"]
}
"mtproxy-links" = {
name = "mtproxy-links"
slug = "mtproxy-links"