syncthing: Use OpenID Connect instead of pubtkt based SSO

Tests:

- Functional tests work.

- Admin user is able to access the application

- User belonging to special group is able to access the application

- Regular user is not able to access the application

- Anonymous user is not able to access the application

Signed-off-by: Sunil Mohan Adapa <sunil@medhas.org>
Reviewed-by: James Valleroy <jvalleroy@mailbox.org>
This commit is contained in:
Sunil Mohan Adapa 2025-11-23 22:39:17 -08:00 committed by James Valleroy
parent 483f28de83
commit cad6bc8ca0
No known key found for this signature in database
GPG Key ID: 77C0C75E7B650808

View File

@ -16,9 +16,7 @@
<Location /syncthing/>
Include includes/freedombox-single-sign-on.conf
ProxyPass http://localhost:8384/
<IfModule mod_auth_pubtkt.c>
TKTAuthToken "admin" "syncthing-access"
</IfModule>
Use AuthOpenIDConnect
Use RequireGroup syncthing-access
</Location>