diff options
| -rw-r--r-- | modules/authentik/default.nix | 5 | ||||
| m--------- | secrets | 0 |
2 files changed, 5 insertions, 0 deletions
diff --git a/modules/authentik/default.nix b/modules/authentik/default.nix index dc87336..9cc3a3f 100644 --- a/modules/authentik/default.nix +++ b/modules/authentik/default.nix @@ -32,6 +32,11 @@ in environmentFile = "/etc/secrets/authentik/ldap.env"; }; + systemd.services.authentik-ldap.serviceConfig = { + AmbientCapabilities = [ "CAP_NET_BIND_SERVICE" ]; + CapabilityBoundingSet = [ "CAP_NET_BIND_SERVICE" ]; + }; + services.authentik-proxy = { enable = true; environmentFile = "/etc/secrets/authentik/proxy.env"; diff --git a/secrets b/secrets -Subproject 421236f500d491540f6ef112f47baaaed9f6b7c +Subproject 25b1d46edbbd5c9faad93c40ddfad9696b9e3cc |
