fix(bao-seed): seed proxy_outpost_token, garage and nextcloud secrets
The seed script only generated authentik LDAP, opnform, homarr and bookstack secrets. Proxy outposts, garage and nextcloud were never seeded, so a fresh demo mount was missing garage/*, nextcloud/* and authentik/proxy_outpost_token — the proxy outpost then failed to authenticate (403) and garage/nextcloud roles aborted on missing vault keys. Add the three blocks; merge semantics keep existing keys.
This commit is contained in:
parent
91d5be8d21
commit
a8c8ac3e1e
1 changed files with 15 additions and 0 deletions
|
|
@ -154,12 +154,27 @@ ensure_key authentik secret_key gen_hex64
|
|||
ensure_key authentik postgres_password gen_pass
|
||||
ensure_key authentik admin_password gen_pass
|
||||
ensure_key authentik ldap_outpost_token gen_hex32
|
||||
ensure_key authentik proxy_outpost_token gen_hex32
|
||||
ensure_key authentik nextcloud_oidc_secret gen_hex32
|
||||
ensure_key authentik opnform_oidc_secret gen_hex32
|
||||
ensure_key authentik homarr_oidc_secret gen_hex32
|
||||
ensure_key authentik bookstack_oidc_secret gen_hex32
|
||||
write_secret authentik
|
||||
|
||||
echo "-> nextcloud"
|
||||
read_secret nextcloud
|
||||
ensure_key nextcloud postgres_password gen_long_pass
|
||||
ensure_key nextcloud admin_password gen_pass
|
||||
write_secret nextcloud
|
||||
|
||||
echo "-> garage"
|
||||
read_secret garage
|
||||
ensure_key garage rpc_secret gen_hex32
|
||||
ensure_key garage admin_token gen_hex32
|
||||
ensure_key garage metrics_token gen_hex32
|
||||
ensure_key garage webui_password gen_pass
|
||||
write_secret garage
|
||||
|
||||
echo "-> opnform"
|
||||
read_secret opnform
|
||||
ensure_key opnform app_key gen_app_key
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue