aboutsummaryrefslogtreecommitdiff
path: root/config.ini
blob: 633a88c865dba6a5d4bc881e8e26d1fd7b095716 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
;; Pleasant SSO configuration file

[site]

;; site name displayed to users. can be anything
name = Pleasant SSO

;; primary domain where your login page will be
primary-domain = auth.example.com

;; all domains that need to be visited to set cookies appropriately
;; note that for now, it's assumed that the domain one level higher than these
;; is the "registrable domain" where the cookies are set to
;; e.g. for 'auth.example.com', the cookie will get Domain=example.com
cookie-domains[] = auth.example.com
cookie-domains[] = auth.example.net

;; location where the source code of the version of the software running on your
;; server can be found. so if you make any significant changes to the source
;; code you'd better put them up online somewhere and change this accordingly!!
;; this is required for AGPL compliance
source-location = https://git.зима.net/winter/pleasant-sso/


[integration]

;; what string to put on the front of header names destined for proxies
;; e.g. if this is 'X-Login', it will make headers like 'X-Login-User'
header-prefix = X-Login


[auth]

;; what AuthProvider to use - i.e. who to ask for users' information
;; ConfigFile -> look in this file, see below
provider = ConfigFile

;; how long (in seconds) until a session expires and you have to log in again
;; 1 year = 31557600, 1 month = 2629800, 1 week = 604800, 1 day = 86400
lifetime = 604800


;; this next section allows you to define users very simple here in the config
;; file, in case you don't want to use an external auth provider (set above)
;; but if you are using an external provider it's okay to remove all of this
[users]

;; password-hash -> allow password login for user
;; password hash should be generated by php function 'password_hash'
winter[password-hash] = "$2y$12$V3dwpbHF5fTx46g9xMflvODNGmr0apltiaDONUSE2skRrslgcRxSS"
;; more options to be added in future!