diff options
| author | Joe Mou <dev@mou.fo> | 2024-12-23 13:42:33 -0800 |
|---|---|---|
| committer | Joe Mou <dev@mou.fo> | 2025-06-16 14:02:30 -0400 |
| commit | ecfccebdeb0c59df6a43243879a6eb42b007a1b6 (patch) | |
| tree | 8840838abe199da69763ed2fbd181c0e5950a867 /hostnix/elmo/home-assistant.nix | |
| parent | f10c3ba0ea43a1ae3385a91bc4ebbcb3aeb2a462 (diff) | |
Revert auth to Zitadel
Still don't love it but let's get things into a working state.
Promising next steps:
- Authlib (Python)
- oidc-provider (Javascript)
- Vouch Proxy, Ory Oauthkeeper, or IdP built-in forward auth
Look at [[Authentication]]
Diffstat (limited to 'hostnix/elmo/home-assistant.nix')
| -rw-r--r-- | hostnix/elmo/home-assistant.nix | 17 |
1 files changed, 1 insertions, 16 deletions
diff --git a/hostnix/elmo/home-assistant.nix b/hostnix/elmo/home-assistant.nix index 0b23db0..7c66951 100644 --- a/hostnix/elmo/home-assistant.nix +++ b/hostnix/elmo/home-assistant.nix @@ -63,14 +63,7 @@ use_x_forwarded_for = true; }; recorder.db_url = "postgresql://@/hass"; - # FIXME doesn't authenticate - # auth_header.username_header = "X-Email"; - auth_header.debug = true; - logger = { - default = "info"; - logs."custom_components.auth_header" = "debug"; - }; - + auth_header = { }; #binary_sensor: # - platform: template @@ -658,14 +651,6 @@ auth_request off; ''; }; - # FIXME testing shim - locations."/test" = { - proxyPass = "http://127.0.0.1:8000"; - extraConfig = '' - proxy_set_header X-User $user; - proxy_set_header X-Email $email; - ''; - }; # Disable service worker caching that works improperly with reverse proxy. # https://github.com/home-assistant/frontend/issues/14836 # https://community.home-assistant.io/t/disabling-service-worker-reverse-proxy-auth-causes-issues/167082 |
