diff --git a/machines/gerd/services/forgejo/auth_sources.nix b/machines/gerd/services/forgejo/auth_sources.nix index 0aaa6e5..a284d96 100644 --- a/machines/gerd/services/forgejo/auth_sources.nix +++ b/machines/gerd/services/forgejo/auth_sources.nix @@ -98,18 +98,12 @@ in { services.authelia.instances.main.settings.identity_providers.oidc.clients = [{ client_id = "forgejo"; client_name = "Forgejo"; - - # authelia crypto hash generate pbkdf2 --variant sha512 --random --random.length 72 --random.charset rfc3986 client_secret = "$pbkdf2-sha512$310000$cOGtLwMHyfugAJCIiUUjfQ$ao7zC8QB1m8aTGNf1dxYbRAPivZ0G1eaJ4bNFVfJiTFZX06U5baBjT0emvoaeFHXMFbYHzorb2/8vxnY/D0b5Q"; - - public = false; redirect_uris = [ "https://${config.mine.shared.settings.forgejo.domain}/user/oauth2/${AUTHELIA_AUTH_NAME}/callback" ]; scopes = [ "openid" "email" "profile" ]; - - userinfo_signed_response_alg = "none"; }]; } diff --git a/machines/gerd/services/nextcloud.nix b/machines/gerd/services/nextcloud.nix index 6f93d7b..565e3e7 100644 --- a/machines/gerd/services/nextcloud.nix +++ b/machines/gerd/services/nextcloud.nix @@ -199,11 +199,7 @@ in { services.authelia.instances.main.settings.identity_providers.oidc.clients = [{ client_id = AUTHELIA_AUTH_NAME; client_name = "Nextcloud"; - - # authelia crypto hash generate pbkdf2 --variant sha512 --random --random.length 72 --random.charset rfc3986 client_secret = "$pbkdf2-sha512$310000$kLNQ/1A.uasSN4g8q94jUQ$8OKNUNNumHCh8dVG5/QWys7u.y1guqFXlrL.bMm7/HKTsWhpib/W.8qlU6VU7V1Be/h14Y.fJi3RLvbkEdo2kA"; - - public = false; redirect_uris = [ "https://${svc_domain}/apps/oidc_login/oidc" ]; scopes = [ "openid" @@ -211,8 +207,6 @@ in { "email" "groups" ]; - - userinfo_signed_response_alg = "none"; }]; services.nginx.virtualHosts."${svc_domain}" = {