kanidm: allow imperative group membership management
Some checks failed
Run nix flake check / flake-check (push) Has been cancelled
Some checks failed
Run nix flake check / flake-check (push) Has been cancelled
This commit is contained in:
@@ -24,9 +24,10 @@
|
|||||||
idmAdminPasswordFile = config.vault.secrets.kanidm-idm-admin.outputDir;
|
idmAdminPasswordFile = config.vault.secrets.kanidm-idm-admin.outputDir;
|
||||||
|
|
||||||
groups = {
|
groups = {
|
||||||
admins = { };
|
# overwriteMembers = false allows imperative member management via CLI
|
||||||
users = { };
|
admins = { overwriteMembers = false; };
|
||||||
ssh-users = { };
|
users = { overwriteMembers = false; };
|
||||||
|
ssh-users = { overwriteMembers = false; };
|
||||||
};
|
};
|
||||||
|
|
||||||
# Regular users (persons) are managed imperatively via kanidm CLI
|
# Regular users (persons) are managed imperatively via kanidm CLI
|
||||||
|
|||||||
Reference in New Issue
Block a user