39 Commits

Author SHA1 Message Date
8ff1f6ba3f keycloak: set bstein mailu_email 2026-01-03 06:15:16 -03:00
6fa75a2009 keycloak: allow mailu_email + groups 2026-01-03 03:32:38 -03:00
5a9cf4de83 keycloak(atlas): default TOTP required action 2026-01-03 01:09:14 -03:00
06add72919 sso: provision vaultwarden users 2026-01-02 21:04:12 -03:00
6e6f8f6658 keycloak(atlas): disable browser IdP redirector 2026-01-02 20:09:05 -03:00
4252c5545e keycloak(atlas): retry realm settings job 2026-01-02 20:04:47 -03:00
9ebdd93186 keycloak(atlas): harden realm settings job 2026-01-02 20:02:11 -03:00
eaf248477f keycloak: cleanup LDAP federation 2026-01-02 18:45:45 -03:00
7b903837e3 keycloak: roll update with no surge 2026-01-02 17:15:37 -03:00
61d85126ab keycloak: clear rollingUpdate for recreate 2026-01-02 17:09:24 -03:00
f8ae031d75 keycloak: use recreate strategy with pvc 2026-01-02 17:02:59 -03:00
38c2bc2c11 keycloak: enable debug logging 2026-01-02 16:57:42 -03:00
ed091f45f9 keycloak: repair ldap federation parentId 2026-01-02 14:12:20 -03:00
5481d6f8b9 sso: fix keycloak ldap provider parentId 2026-01-02 14:02:05 -03:00
6589f8f8e8 sso: codify openldap bootstrap and keycloak federation 2026-01-02 13:18:32 -03:00
07f2c8adc6 keycloak: apply realm smtp via api 2026-01-02 04:03:27 -03:00
c16635fe8c keycloak: set realm smtp server 2026-01-02 03:58:37 -03:00
a1b3a9cd42 keycloak: switch realm job to kcadm 2026-01-02 03:55:28 -03:00
5b1e5a51e2 keycloak: fix realm job service URL 2026-01-02 03:49:19 -03:00
4853957809 keycloak: pin realm job to rpi nodes 2026-01-02 03:45:44 -03:00
3228bd292d keycloak: enable reset password 2026-01-02 03:39:08 -03:00
94128516a8 keycloak: read POSTGRES_* db secret keys 2026-01-01 12:32:57 -03:00
a32ed7a2a6 registry: point workloads to harbor 2025-12-16 00:08:11 -03:00
bc0c85a9ca zot: add oauth proxy and user sync scripts 2025-12-15 12:57:02 -03:00
7b0990e69a cleanup: stop tracking extra md files; switch gitops cert to letsencrypt 2025-12-14 15:52:12 -03:00
8d6650129e nextcloud: integration with mailu & gitops-ui: initial install 2025-12-14 14:21:40 -03:00
de8d4d9331 Normalize doc layout and README guidance 2025-12-14 13:47:59 -03:00
1acc865db4 restore readmes removed in last commit 2025-12-13 03:57:44 -03:00
e06a6826b7 atlas pods: add namespace plurality by node table 2025-12-13 03:57:20 -03:00
a7704beda6 restore docs after gitignore change 2025-12-12 00:50:02 -03:00
27deb933bc mailu: fix admin dns and tame vip 2025-12-12 00:49:45 -03:00
de727eee07 keycloak: restrict to worker rpis with titan-24 fallback 2025-12-06 01:44:23 -03:00
2122ce3e31 keycloak: require rpi nodes with titan-24 fallback 2025-12-06 01:40:24 -03:00
f2d496c6c0 keycloak: prefer rpi nodes, avoid titan-24 2025-12-06 01:36:33 -03:00
127d09755e keycloak: honor xforwarded headers and hostname url 2025-12-06 01:23:07 -03:00
9f5e61ebed keycloak: enable health/metrics management port 2025-12-06 00:51:47 -03:00
b1b39c4dcd keycloak: set fsGroup for data volume 2025-12-06 00:49:17 -03:00
65d8986279 keycloak: remove optimized flag for first start 2025-12-06 00:43:24 -03:00
7e46ffc075 keycloak: add raw manifests backed by shared postgres 2025-12-02 17:58:19 -03:00