kanidm: allow imperative group membership management
Some checks failed
Run nix flake check / flake-check (push) Has been cancelled
Some checks failed
Run nix flake check / flake-check (push) Has been cancelled
This commit is contained in:
@@ -24,9 +24,10 @@
|
||||
idmAdminPasswordFile = config.vault.secrets.kanidm-idm-admin.outputDir;
|
||||
|
||||
groups = {
|
||||
admins = { };
|
||||
users = { };
|
||||
ssh-users = { };
|
||||
# overwriteMembers = false allows imperative member management via CLI
|
||||
admins = { overwriteMembers = false; };
|
||||
users = { overwriteMembers = false; };
|
||||
ssh-users = { overwriteMembers = false; };
|
||||
};
|
||||
|
||||
# Regular users (persons) are managed imperatively via kanidm CLI
|
||||
|
||||
Reference in New Issue
Block a user