atlas
1f0b3cf0cc
swarm-authelia: one fact in three places, kept in two
...
`docs/swarm/sso.md` already argues that the OIDC provider is derived from
the client list rather than carrying its own `enable` — authelia refuses to
start without clients, so a separate flag would be a second fact free to
disagree. The module header said it again, and the definition site said it a
third time.
The doc keeps the argument. The definition site keeps a short version,
because someone changing `oidcEnabled` needs the reason there and not two
files away, along with the part no doc carries: that it is unconditionally
true today and stays derived so the OIDC-gated code below is self-documenting
about why it is conditional.
The header also restated the users-store rationale the doc's "does not
provision users" bullet owns. What survives there is the one clause the doc
does not have — why a file backend is right rather than a placeholder for
LDAP, the subject set being bounded by one swarm.
503 comment lines to 495. Comment-only: still 36 module-eval properties.
2026-09-02 01:49:35 +02:00
..
hive-c0re
otel: ship the journals the dashboard can already show
2026-08-31 12:51:51 +02:00
hive-forge
swarm: remove swarm.ui.domain, serve the UI on the swarm domain
2026-08-31 19:00:52 +02:00
hive-gateway
deploy: move the hive CA's knobs to deploy.hive-controller.tls
2026-08-30 20:52:00 +02:00
lib
swarm: extract the name guards, so the module just says what is forbidden
2026-08-31 18:50:15 +02:00
swarm-grafana /dashboards
feat( #3849 ): a grafana board for the swarm's secret store
2026-09-01 11:10:30 +02:00
default.nix
glue-matrix-bao-token: the store's first reader
2026-08-30 19:01:10 +02:00
deploy.nix
deploy: move the hive CA's knobs to deploy.hive-controller.tls
2026-08-30 20:52:00 +02:00
glue-bao-tls.nix
swarm-bao: ship the store's logs and metrics
2026-08-31 21:25:00 +02:00
glue-matrix-bao-token.nix
swarm-bao: ship the store's logs and metrics
2026-08-31 21:25:00 +02:00
hive-ci.nix
otel: ship the journals the dashboard can already show
2026-08-31 12:51:51 +02:00
hive-matrix.nix
docs: M4TR1X page is reached via swarm-ui's LinksMenu, not opened directly
2026-08-31 12:55:40 +02:00
hive-network.nix
require network isolation, deleting the residual non-isolated branch
2026-08-30 03:32:08 +02:00
hive-priv.nix
fix( #2573 ): also add /etc/tmpfiles.d to hive-priv ReadWritePaths (same EROFS class)
2026-07-18 16:39:20 +02:00
hive-tls.nix
deploy: move the hive CA's knobs to deploy.hive-controller.tls
2026-08-30 20:52:00 +02:00
hyperhive.nix
deploy: rename enableAllLocalDefaults to deploy.singleHostSwarm
2026-08-30 20:12:16 +02:00
local-defaults.nix
deploy: rename enableAllLocalDefaults to deploy.singleHostSwarm
2026-08-30 20:12:16 +02:00
otel.nix
deploy: move the hive CA's knobs to deploy.hive-controller.tls
2026-08-30 20:52:00 +02:00
stylix-theme.nix
swarm-ui: apply the operator's stylix theme, same as the dashboard already does
2026-08-24 14:28:25 +02:00
swarm-authelia.nix
swarm-authelia: one fact in three places, kept in two
2026-09-02 01:49:35 +02:00
swarm-bao.nix
fix( #3849 ): scrape the path openbao actually serves
2026-09-01 11:10:30 +02:00
swarm-ca.nix
deploy: move the hive CA's knobs to deploy.hive-controller.tls
2026-08-30 20:52:00 +02:00
swarm-container-resolver.nix
fix( #3363 ): swarm containers write their own resolver file
2026-08-17 17:30:15 +02:00
swarm-controller.nix
swarm: remove swarm.ui.domain, serve the UI on the swarm domain
2026-08-31 19:00:52 +02:00
swarm-grafana.nix
feat( #3849 ): a grafana board for the swarm's secret store
2026-09-01 11:10:30 +02:00
swarm-nats.nix
deploy: move the hive CA's knobs to deploy.hive-controller.tls
2026-08-30 20:52:00 +02:00
swarm-otel.nix
swarm-otel: stop restating what docs/observability.md already says
2026-09-02 01:39:31 +02:00
swarm-peers-removed.nix
docs+nix: fix stale certFingerprint/HYPERHIVE_PEERS references (hyperhive#3294)
2026-08-15 19:56:11 +02:00
swarm-required-services.nix
deploy: rename enableAllLocalDefaults to deploy.singleHostSwarm
2026-08-30 20:12:16 +02:00
swarm-snapshot-store.nix
refactor( #2862 ): keep the option at services.hyperhive.snapshotStore
2026-07-31 19:03:24 +02:00
swarm-ui.nix
swarm: remove swarm.ui.domain, serve the UI on the swarm domain
2026-08-31 19:00:52 +02:00
swarm-victorialogs.nix
fix( #3554 ): push to the swarm's stores by domain, authenticated
2026-09-01 11:11:37 +02:00
swarm-victoriametrics.nix
fix( #3554 ): push to the swarm's stores by domain, authenticated
2026-09-01 11:11:37 +02:00
swarm-wireguard.nix
docs+nix: fix stale certFingerprint/HYPERHIVE_PEERS references (hyperhive#3294)
2026-08-15 19:56:11 +02:00
swarm.nix
swarm: remove swarm.ui.domain, serve the UI on the swarm domain
2026-08-31 19:00:52 +02:00