From e13d3f3cb7e223c9b67d950f69d30e6001a60fc1 Mon Sep 17 00:00:00 2001 From: Joey Hafner Date: Wed, 11 Jan 2023 21:20:19 -0800 Subject: [PATCH] Move privileged services to privileged forwardauth instance --- .../server/config/autopirate/docker-compose.yml | 14 +++++++------- .../server/config/jdownloader2/docker-compose.yml | 2 +- .../server/config/monitoring/docker-compose.yml | 2 +- .../server/config/qbittorrent/docker-compose.yml | 2 +- homelab/server/config/stashapp/docker-compose.yml | 2 +- 5 files changed, 11 insertions(+), 11 deletions(-) diff --git a/homelab/server/config/autopirate/docker-compose.yml b/homelab/server/config/autopirate/docker-compose.yml index be3f8f23..193eb67b 100644 --- a/homelab/server/config/autopirate/docker-compose.yml +++ b/homelab/server/config/autopirate/docker-compose.yml @@ -23,7 +23,7 @@ services: - traefik.http.routers.radarr.rule=Host(`radarr.jafner.net`) - traefik.http.routers.radarr.tls.certresolver=lets-encrypt - traefik.http.services.radarr.loadbalancer.server.port=7878 - - traefik.http.routers.radarr.middlewares=lan-only@file,traefik-forward-auth@file + - traefik.http.routers.radarr.middlewares=lan-only@file,traefik-forward-auth-privileged@file sonarr: image: linuxserver/sonarr @@ -48,7 +48,7 @@ services: - traefik.http.routers.sonarr.rule=Host(`sonarr.jafner.net`) - traefik.http.routers.sonarr.tls.certresolver=lets-encrypt - traefik.http.services.sonarr.loadbalancer.server.port=8989 - - traefik.http.routers.sonarr.middlewares=lan-only@file,traefik-forward-auth@file + - traefik.http.routers.sonarr.middlewares=lan-only@file,traefik-forward-auth-privileged@file lidarr: image: linuxserver/lidarr @@ -73,7 +73,7 @@ services: - traefik.http.routers.lidarr.rule=Host(`lidarr.jafner.net`) - traefik.http.routers.lidarr.tls.certresolver=lets-encrypt - trarfik.http.services.lidarr.loadbalancer.server.port=8686 - - traefik.http.routers.lidarr.middlewares=lan-only@file,traefik-forward-auth@file + - traefik.http.routers.lidarr.middlewares=lan-only@file,traefik-forward-auth-privileged@file nzbhydra2: image: linuxserver/nzbhydra2 @@ -97,7 +97,7 @@ services: - traefik.http.routers.nzbhydra2.rule=Host(`nzbhydra.jafner.net`) - traefik.http.routers.nzbhydra2.tls.certresolver=lets-encrypt - traefik.http.services.nzbhydra2.loadbalancer.server.port=5076 - - traefik.http.routers.nzbhydra2.middlewares=lan-only@file,traefik-forward-auth@file + - traefik.http.routers.nzbhydra2.middlewares=lan-only@file,traefik-forward-auth-privileged@file sabnzbd: image: linuxserver/sabnzbd @@ -125,7 +125,7 @@ services: - traefik.http.routers.sabnzbd.rule=Host(`sabnzbd.jafner.net`) - traefik.http.routers.sabnzbd.tls.certresolver=lets-encrypt - traefik.http.services.sabnzbd.loadbalancer.server.port=8080 - - traefik.http.routers.sabnzbd.middlewares=lan-only@file,traefik-forward-auth@file + - traefik.http.routers.sabnzbd.middlewares=lan-only@file,traefik-forward-auth-privileged@file tdarr: image: haveagitgat/tdarr:latest @@ -149,7 +149,7 @@ services: labels: - traefik.http.routers.tdarr.rule=Host(`tdarr.jafner.net`) - traefik.http.routers.tdarr.tls.certresolver=lets-encrypt - - traefik.http.routers.tdarr.middlewares=lan-only@file,traefik-forward-auth@file + - traefik.http.routers.tdarr.middlewares=lan-only@file,traefik-forward-auth-privileged@file - traefik.http.services.tdarr.loadbalancer.server.port=8265 env_file: - autopirate.env @@ -218,7 +218,7 @@ services: - traefik.http.routers.jackett.rule=Host(`jackett.jafner.net`) - traefik.http.routers.jackett.tls.certresolver=lets-encrypt - traefik.http.services.jackett.loadbalancer.server.port=9117 - - traefik.http.routers.jackett.middlewares=lan-only@file,traefik-forward-auth@file + - traefik.http.routers.jackett.middlewares=lan-only@file,traefik-forward-auth-privileged@file networks: tdarr: diff --git a/homelab/server/config/jdownloader2/docker-compose.yml b/homelab/server/config/jdownloader2/docker-compose.yml index 498520c1..acbebd6b 100644 --- a/homelab/server/config/jdownloader2/docker-compose.yml +++ b/homelab/server/config/jdownloader2/docker-compose.yml @@ -21,7 +21,7 @@ services: labels: - traefik.http.routers.jdl.rule=Host(`jdl.jafner.net`) - traefik.http.routers.jdl.tls.certresolver=lets-encrypt - - traefik.http.routers.jdl.middlewares=traefik-forward-auth@file + - traefik.http.routers.jdl.middlewares=traefik-forward-auth-privileged@file - traefik.http.services.jdl.loadbalancer.server.port=5800 networks: diff --git a/homelab/server/config/monitoring/docker-compose.yml b/homelab/server/config/monitoring/docker-compose.yml index 4e131dc6..c57228e9 100644 --- a/homelab/server/config/monitoring/docker-compose.yml +++ b/homelab/server/config/monitoring/docker-compose.yml @@ -51,7 +51,7 @@ services: labels: - traefik.http.routers.prometheus-monitoring.rule=Host(`prometheus.jafner.net`) - traefik.http.routers.prometheus-monitoring.tls.certresolver=lets-encrypt - - traefik.http.routers.prometheus-monitoring.middlewares=traefik-forward-auth@file + - traefik.http.routers.prometheus-monitoring.middlewares=traefik-forward-auth-privileged@file loki: image: grafana/loki:2.5.0 diff --git a/homelab/server/config/qbittorrent/docker-compose.yml b/homelab/server/config/qbittorrent/docker-compose.yml index 6e333361..96e4194a 100644 --- a/homelab/server/config/qbittorrent/docker-compose.yml +++ b/homelab/server/config/qbittorrent/docker-compose.yml @@ -28,7 +28,7 @@ services: labels: - traefik.http.routers.qbt.rule=Host(`qbt.jafner.net`) - traefik.http.routers.qbt.tls.certresolver=lets-encrypt - - traefik.http.routers.qbt.middlewares=traefik-forward-auth@file + - traefik.http.routers.qbt.middlewares=traefik-forward-auth-privileged@file - traefik.http.services.qbt.loadbalancer.server.port=8080 # - traefik.http.routers.qbt.priority=10 # - traefik.http.routers.qbt-auth.rule=Host(`qbt.jafner.net`) && PathPrefix(`/outpost.goauthentik.io/`) diff --git a/homelab/server/config/stashapp/docker-compose.yml b/homelab/server/config/stashapp/docker-compose.yml index 14ca6c24..92971c2d 100644 --- a/homelab/server/config/stashapp/docker-compose.yml +++ b/homelab/server/config/stashapp/docker-compose.yml @@ -27,7 +27,7 @@ services: labels: - traefik.http.routers.stash.rule=Host(`stash.jafner.net`) - traefik.http.routers.stash.tls.certresolver=lets-encrypt - - traefik.http.routers.stash.middlewares=traefik-forward-auth@file + - traefik.http.routers.stash.middlewares=traefik-forward-auth-privileged@file networks: web: