nix-config/hosts/alexandria
William 952a55f03d Add Kanidm identity provider to alexandria
Added Kanidm server configuration to serve as central identity provider for
all services. Configuration includes:
- Server on auth.baduhai.dev with HTTPS
- LDAP support on port 636 for legacy integrations
- Nginx reverse proxy with SSL termination
- Added to shared services for DNS resolution

Kanidm will provide OAuth2/OIDC authentication for Nextcloud, Vaultwarden,
Forgejo, and other services.
2025-11-08 22:24:37 -03:00
..
hardware-configuration.nix now using flake-parts; refactored nixosConfigurations; using hm standalone 2025-10-14 19:28:30 -03:00
jellyfin.nix Switch from wildcard to per-domain SSL certificates 2025-11-08 21:47:41 -03:00
kanidm.nix Add Kanidm identity provider to alexandria 2025-11-08 22:24:37 -03:00
nextcloud.nix Switch from wildcard to per-domain SSL certificates 2025-11-08 21:47:41 -03:00
nginx.nix Switch from wildcard to per-domain SSL certificates 2025-11-08 21:47:41 -03:00
unbound.nix Split DNS servers: alexandria for LAN, trantor for tailnet 2025-11-08 21:35:53 -03:00
vaultwarden.nix Switch from wildcard to per-domain SSL certificates 2025-11-08 21:47:41 -03:00