blob: c05b69a0e8ab443768bff665958491eebf3dbd68 [file] [log] [blame]
Giorgi Lekveishvilicc56ae92023-05-31 17:50:39 +04001{{- $secret := include "clientSecret" . -}}
2apiVersion: hydra.ory.sh/v1alpha1
3kind: OAuth2Client
4metadata:
5 name: headscale
6 namespace: {{ .Release.Namespace }}
7spec:
8 grantTypes:
9 - authorization_code
10 responseTypes:
11 - code
12 scope: "openid profile email"
13 secretName: {{ .Values.oauth2.secretName }}
14 redirectUris:
15 - https://headscale.{{ .Values.domain }}/oidc/callback
16 hydraAdmin:
17 url: {{ .Values.oauth2.hydraAdmin }}
18 port: 80
19 endpoint: /clients
20 forwardedProto: https