2026-08-25 11:11:37 -07:00
|
|
|
apiVersion: v1
|
|
|
|
|
kind: ConfigMap
|
|
|
|
|
metadata:
|
|
|
|
|
name: paperless-config
|
|
|
|
|
data:
|
|
|
|
|
PAPERLESS_URL: "https://paperless.riotpiao.com"
|
|
|
|
|
PAPERLESS_TIME_ZONE: "America/Los_Angeles"
|
|
|
|
|
PAPERLESS_OCR_LANGUAGE: "eng"
|
|
|
|
|
PAPERLESS_DBHOST: "paperless-db-rw"
|
|
|
|
|
PAPERLESS_DBNAME: "paperless"
|
|
|
|
|
PAPERLESS_REDIS: "redis://paperless-redis:6379"
|
|
|
|
|
# django-allauth generic OIDC provider. The client_id/secret/server_url
|
|
|
|
|
# bundle itself lives in the paperless-oidc Secret
|
|
|
|
|
# (SOCIALACCOUNT_PROVIDERS_JSON key, composed by authentik-provision.py) -
|
|
|
|
|
# env vars can't be split across a ConfigMap + Secret for the same key, so
|
|
|
|
|
# this whole value is sourced from the Secret in deployment.yaml instead.
|
|
|
|
|
PAPERLESS_APPS: "allauth.socialaccount.providers.openid_connect"
|
2026-08-25 13:05:50 -07:00
|
|
|
# Authentik already verifies identity via OIDC - a second email-confirmation
|
|
|
|
|
# step has no SMTP configured to send it anyway, and paperless-ngx doesn't
|
|
|
|
|
# wire up allauth's confirm-email view, so signup 500s with NoReverseMatch
|
|
|
|
|
# on 'account_confirm_email' without this.
|
|
|
|
|
PAPERLESS_ACCOUNT_EMAIL_VERIFICATION: "none"
|