webui/.env aktualisiert
This commit is contained in:
27
webui/.env
27
webui/.env
@@ -14,11 +14,24 @@ OPENAI_API_KEY=sk-XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
|
|||||||
# ------------------------------------------------------------------
|
# ------------------------------------------------------------------
|
||||||
# OIDC / Keycloak configuration
|
# OIDC / Keycloak configuration
|
||||||
# ------------------------------------------------------------------
|
# ------------------------------------------------------------------
|
||||||
OIDC_ENABLED=true # enable OIDC
|
# General
|
||||||
OIDC_ISSUER=https://keycloak.example.com/realms/myrealm # Keycloak realm URL
|
WEBUI_URL=https://ai.example.com
|
||||||
OIDC_CLIENT_ID=openwebui-client # client ID created in Keycloak
|
|
||||||
OIDC_CLIENT_SECRET=your-client-secret # client secret (if confidential)
|
# Keycloak / OIDC Settings
|
||||||
OIDC_REDIRECT_URI=https://your-domain.com/auth/callback # exact redirect URI in Keycloak
|
OAUTH_CLIENT_ID=open-webui
|
||||||
OIDC_SCOPE=openid email profile # scopes you want to request
|
OAUTH_CLIENT_SECRET=your_keycloak_client_secret_here
|
||||||
OIDC_PKCE=true # PKCE (recommended)
|
OPENID_PROVIDER_URL=https://auth.example.com/realms/your-realm/.well-known/openid-configuration
|
||||||
|
OAUTH_PROVIDER_NAME=Keycloak
|
||||||
|
|
||||||
|
# Logic & Scopes
|
||||||
|
ENABLE_OAUTH_SIGNUP=true
|
||||||
|
OAUTH_MERGE_ACCOUNTS_BY_EMAIL=true
|
||||||
|
OAUTH_SCOPES=openid email profile groups
|
||||||
|
OAUTH_CODE_CHALLENGE_METHOD=S256
|
||||||
|
|
||||||
|
# Role Management
|
||||||
|
ENABLE_OAUTH_ROLE_MANAGEMENT=true
|
||||||
|
OAUTH_ROLES_CLAIM=groups
|
||||||
|
OAUTH_ALLOWED_ROLES=openwebui,openwebui-admin
|
||||||
|
OAUTH_ADMIN_ROLES=openwebui-admin
|
||||||
LOG_LEVEL=debug
|
LOG_LEVEL=debug
|
||||||
Reference in New Issue
Block a user