Update group names to lldap convention: parking_admins, managers
This commit is contained in:
@@ -107,9 +107,9 @@ When `AUTHELIA_ENABLED=true`, the app trusts Authelia headers:
|
|||||||
- `Remote-Name`: Display name
|
- `Remote-Name`: Display name
|
||||||
- `Remote-Groups`: Comma-separated group list
|
- `Remote-Groups`: Comma-separated group list
|
||||||
|
|
||||||
Group mapping:
|
Group mapping (follows lldap naming convention):
|
||||||
- `parking-admins` → admin role
|
- `parking_admins` → admin role
|
||||||
- `parking-managers` → manager role
|
- `managers` → manager role
|
||||||
- Others → employee role
|
- Others → employee role
|
||||||
|
|
||||||
## User Roles
|
## User Roles
|
||||||
|
|||||||
@@ -28,9 +28,9 @@ AUTHELIA_HEADER_USER = os.getenv("AUTHELIA_HEADER_USER", "Remote-User")
|
|||||||
AUTHELIA_HEADER_NAME = os.getenv("AUTHELIA_HEADER_NAME", "Remote-Name")
|
AUTHELIA_HEADER_NAME = os.getenv("AUTHELIA_HEADER_NAME", "Remote-Name")
|
||||||
AUTHELIA_HEADER_EMAIL = os.getenv("AUTHELIA_HEADER_EMAIL", "Remote-Email")
|
AUTHELIA_HEADER_EMAIL = os.getenv("AUTHELIA_HEADER_EMAIL", "Remote-Email")
|
||||||
AUTHELIA_HEADER_GROUPS = os.getenv("AUTHELIA_HEADER_GROUPS", "Remote-Groups")
|
AUTHELIA_HEADER_GROUPS = os.getenv("AUTHELIA_HEADER_GROUPS", "Remote-Groups")
|
||||||
# Group to role mapping
|
# Group to role mapping (follows lldap naming convention)
|
||||||
AUTHELIA_ADMIN_GROUP = os.getenv("AUTHELIA_ADMIN_GROUP", "parking-admins")
|
AUTHELIA_ADMIN_GROUP = os.getenv("AUTHELIA_ADMIN_GROUP", "parking_admins")
|
||||||
AUTHELIA_MANAGER_GROUP = os.getenv("AUTHELIA_MANAGER_GROUP", "parking-managers")
|
AUTHELIA_MANAGER_GROUP = os.getenv("AUTHELIA_MANAGER_GROUP", "managers")
|
||||||
|
|
||||||
# Email (optional)
|
# Email (optional)
|
||||||
SMTP_HOST = os.getenv("SMTP_HOST", "")
|
SMTP_HOST = os.getenv("SMTP_HOST", "")
|
||||||
|
|||||||
@@ -95,9 +95,9 @@ parking.rocketscale.it {
|
|||||||
|
|
||||||
In lldap (https://ldap.rocketscale.it):
|
In lldap (https://ldap.rocketscale.it):
|
||||||
|
|
||||||
1. Create group: `parking-admins`
|
1. Create group: `parking_admins` (follows lldap naming convention)
|
||||||
2. Create group: `parking-managers`
|
2. Create group: `managers` (reusable across apps)
|
||||||
3. Add yourself to `parking-admins`
|
3. Add yourself to `parking_admins`
|
||||||
|
|
||||||
## Step 7: Deploy
|
## Step 7: Deploy
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user