{ config, lib, ... }: { options.sysconfig.opts.virtualization.authentik.enable = lib.options.mkOption { type = lib.types.bool; default = false; }; imports = [ ./docker-compose.nix ]; config = lib.mkIf config.sysconfig.opts.virtualization.authentik.enable { sops.templates."authentik.env" = { content = '' POSTGRES_DB=authentik-db POSTGRES_USER=authentik-admin POSTGRES_PASSWORD=${config.sops.placeholder."authentik/pass"} AUTHENTIK_SECRET_KEY=${config.sops.placeholder."authentik/secret_key"} AUTHENTIK_POSTGRESQL__NAME=authentik-db AUTHENTIK_POSTGRESQL__USER=authentik-admin AUTHENTIK_POSTGRESQL__PASSWORD=${config.sops.placeholder."authentik/pass"} ''; path = "/ssd1/Authentik/.env"; }; }; }