Files
applications/headlamp/external-secret.yaml
Mayne0213 f17bbe3514 FEAT(headlamp): configure Headlamp OIDC with Authelia
- Add OIDC configuration (clientID, issuerURL, scopes)
- Add ExternalSecret for OIDC client secret from Vault
- Remove Authelia middleware (using direct OIDC auth)
2026-01-05 00:43:51 +09:00

19 lines
410 B
YAML

apiVersion: external-secrets.io/v1
kind: ExternalSecret
metadata:
name: headlamp-oidc
namespace: headlamp
spec:
refreshInterval: 1h
secretStoreRef:
kind: ClusterSecretStore
name: vault-backend
target:
name: headlamp-oidc
creationPolicy: Owner
data:
- secretKey: clientSecret
remoteRef:
key: cluster-infrastructure/authelia
property: HEADLAMP_CLIENT_SECRET