mirror of
https://github.com/MacRimi/ProxMenux.git
synced 2026-09-29 18:16:43 +00:00
OCI manager Apps - App tab: containers installed from an OCI image are identified from their installation record; the application and image versions are shown and an update is detected by image digest; repository link; Refresh data. - Updates tab for OCI containers: Update and Recreate run the same flow as the OCI menu in the Monitor terminal; the pre-update backup can be kept in a backup storage; scheduled image updates with an optional minimum age. - Logs tab: console output of the application, kept on the host (lxc.console.logfile + logrotate) and followed live. - The Proxmox console opens a shell (cmode: shell) when the image has one. - A damaged image download is fetched again before failing. - Multi-container applications open at their LAN address; volume mount points on block storage report their usage. Monitor - Proxmox notifications are delivered to a loopback-only HTTP listener when HTTPS is enabled, so they no longer fail certificate verification. - Log persistence counts recurring patterns only; an ended burst is not reported as persistent and its warning clears on its own (#386). - Proxmox notification config backups are deduplicated and capped at three. - The update icon on the Apps page opens the container on its Updates tab. - Version 1.2.6.2-beta and its release notes in every Monitor language. Docs - OCI manager Apps and Audit & Report rebuilt as per-page message files, with a new page for OCI containers in the Monitor. - Seven pages fixed where rich-text tags were missing from t.rich. Translations - Spanish fixes across the OCI engine, the Monitor and the TUI menus. Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
253 lines
9.0 KiB
JSON
253 lines
9.0 KiB
JSON
{
|
||
"schema_version": "0.3.0",
|
||
"kind": "proxmenux.oci-template",
|
||
"id": "linuxserver-ldap-auth",
|
||
"status": "generated-unvalidated",
|
||
"catalog_ui": {
|
||
"title": {
|
||
"en_US": "Ldap Auth"
|
||
},
|
||
"tagline": {
|
||
"en_US": "Ldap-auth software is for authenticating users who request protected resources from servers proxied by nginx. It includes a daemon (ldap-auth) that communicates with an authentication server, and a webserver daemon that generates an authentication cookie based on the user’s credentials. The daemons are written in Python for use with a Lightweight Directory Access Protocol (LDAP) authentication server (OpenLDAP or Microsoft Windows Active Directory 2003 and 2012)."
|
||
},
|
||
"description": {
|
||
"en_US": "Ldap-auth software is for authenticating users who request protected resources from servers proxied by nginx. It includes a daemon (ldap-auth) that communicates with an authentication server, and a webserver daemon that generates an authentication cookie based on the user’s credentials. The daemons are written in Python for use with a Lightweight Directory Access Protocol (LDAP) authentication server (OpenLDAP or Microsoft Windows Active Directory 2003 and 2012)."
|
||
},
|
||
"category": "security",
|
||
"category_label": "Authentication & Security",
|
||
"author": "LinuxServer.io",
|
||
"developer": null,
|
||
"icon": "https://cdn.jsdelivr.net/gh/linuxserver/docker-templates@master/linuxserver.io/img/ldap-auth-logo.png",
|
||
"thumbnail": "https://raw.githubusercontent.com/linuxserver/docker-templates/master/linuxserver.io/img/ldap-auth-banner.png",
|
||
"screenshots": [],
|
||
"architectures": [
|
||
"amd64",
|
||
"arm64"
|
||
],
|
||
"launch": {
|
||
"scheme": "http",
|
||
"port": 8888,
|
||
"path": "/"
|
||
},
|
||
"website": "https://github.com/nginxinc/nginx-ldap-auth",
|
||
"documentation": "https://docs.linuxserver.io/images/docker-ldap-auth/",
|
||
"repository": "https://github.com/linuxserver/docker-ldap-auth",
|
||
"tips": [],
|
||
"mini_changelog": [
|
||
{
|
||
"date": "2026-07-17",
|
||
"note": "Rebase to Alpine 3.24."
|
||
},
|
||
{
|
||
"date": "2024-12-25",
|
||
"note": "Add `legacy-cgi`. Fix fernet key storage."
|
||
},
|
||
{
|
||
"date": "2024-12-22",
|
||
"note": "Rebase to Alpine 3.21. Add support for read-only and non-root."
|
||
},
|
||
{
|
||
"date": "2024-06-30",
|
||
"note": "Rebase to Alpine 3.20."
|
||
},
|
||
{
|
||
"date": "2023-12-23",
|
||
"note": "Rebase to Alpine 3.19."
|
||
}
|
||
],
|
||
"display_version": null,
|
||
"updated_at": "2026-07-17"
|
||
},
|
||
"source": {
|
||
"provider": "linuxserver.io",
|
||
"repository": "https://github.com/linuxserver/docker-ldap-auth",
|
||
"default_branch": "master",
|
||
"revision": "ffda25e21ae4b01e60f46195496b995b1c95d136",
|
||
"readme_raw_url": "https://raw.githubusercontent.com/linuxserver/docker-ldap-auth/ffda25e21ae4b01e60f46195496b995b1c95d136/README.md",
|
||
"readme_pushed_at": "2026-09-06T16:30:37Z",
|
||
"compose_sha256": "1ea640a52f0ca46062ec1cae9f8cf59ab63b9cbf08fd7af3d2879c003312c8ee",
|
||
"generated_at": "2026-09-12T14:37:30+00:00"
|
||
},
|
||
"container_contract": {
|
||
"service_name": "ldap-auth",
|
||
"container_name": "ldap-auth",
|
||
"image": {
|
||
"reference": "lscr.io/linuxserver/ldap-auth:latest",
|
||
"registry": "lscr.io",
|
||
"repository": "lscr.io/linuxserver/ldap-auth",
|
||
"tag": "latest",
|
||
"digest": null,
|
||
"pull_policy": "resolve-selected-tag-to-architecture-digest-at-install"
|
||
},
|
||
"environment": [
|
||
{
|
||
"name": "PUID",
|
||
"example": "1000",
|
||
"required": true,
|
||
"sensitive": false,
|
||
"source": "linuxserver-compose"
|
||
},
|
||
{
|
||
"name": "PGID",
|
||
"example": "1000",
|
||
"required": true,
|
||
"sensitive": false,
|
||
"source": "linuxserver-compose"
|
||
},
|
||
{
|
||
"name": "TZ",
|
||
"example": "Etc/UTC",
|
||
"required": true,
|
||
"sensitive": false,
|
||
"source": "linuxserver-compose"
|
||
},
|
||
{
|
||
"name": "FERNETKEY",
|
||
"example": "",
|
||
"required": false,
|
||
"sensitive": false,
|
||
"source": "linuxserver-compose"
|
||
},
|
||
{
|
||
"name": "CERTFILE",
|
||
"example": "",
|
||
"required": false,
|
||
"sensitive": false,
|
||
"source": "linuxserver-compose"
|
||
},
|
||
{
|
||
"name": "KEYFILE",
|
||
"example": "",
|
||
"required": false,
|
||
"sensitive": false,
|
||
"source": "linuxserver-compose"
|
||
}
|
||
],
|
||
"volumes": [],
|
||
"ports": [
|
||
{
|
||
"container_port": 8888,
|
||
"published_example": 8888,
|
||
"protocol": "tcp",
|
||
"required": true,
|
||
"proxmox_behavior": "listener-on-dedicated-lxc-address-no-nat"
|
||
},
|
||
{
|
||
"container_port": 9000,
|
||
"published_example": 9000,
|
||
"protocol": "tcp",
|
||
"required": true,
|
||
"proxmox_behavior": "listener-on-dedicated-lxc-address-no-nat"
|
||
}
|
||
],
|
||
"related_services": [],
|
||
"restart": "unless-stopped",
|
||
"stop_grace_period": null,
|
||
"original_compose": "---\nservices:\n ldap-auth:\n image: lscr.io/linuxserver/ldap-auth:latest\n container_name: ldap-auth\n environment:\n - PUID=1000\n - PGID=1000\n - TZ=Etc/UTC\n - FERNETKEY= #optional\n - CERTFILE= #optional\n - KEYFILE= #optional\n ports:\n - 8888:8888\n - 9000:9000\n restart: unless-stopped\n"
|
||
},
|
||
"first_run": {
|
||
"endpoints": [
|
||
{
|
||
"label": "Web UI",
|
||
"scheme": "http",
|
||
"port": 8888,
|
||
"path": "/",
|
||
"source": "compose-first-tcp-port-fallback"
|
||
}
|
||
],
|
||
"credentials": []
|
||
},
|
||
"proxmox": {
|
||
"runtime": "native-oci-lxc",
|
||
"technology_status": "proxmox-technology-preview",
|
||
"defaults": {
|
||
"unprivileged": true,
|
||
"ostype": "auto-from-image",
|
||
"cores": 2,
|
||
"memory_mb": 1024,
|
||
"swap_mb": 512,
|
||
"rootfs_size_gb": 8,
|
||
"rootfs_storage": "local-lvm",
|
||
"volume_storage": "local-lvm",
|
||
"template_storage": "local",
|
||
"bridge": "vmbr0",
|
||
"ipv4": "dhcp",
|
||
"firewall": true,
|
||
"host_managed_network": true,
|
||
"onboot": false,
|
||
"features": [
|
||
"nesting=1"
|
||
],
|
||
"shutdown_timeout_seconds": 30
|
||
},
|
||
"image_metadata_policy": {
|
||
"entrypoint": "import-from-oci-image",
|
||
"cmd": "import-from-oci-image",
|
||
"environment": "import-image-env-then-apply-compose-overrides",
|
||
"user": "import-from-oci-image",
|
||
"working_dir": "import-from-oci-image",
|
||
"stop_signal": "import-from-oci-image"
|
||
},
|
||
"adaptations": [
|
||
{
|
||
"id": "dedicated-lxc-network",
|
||
"upstream_behavior": "Docker publishes selected container ports on the Docker host.",
|
||
"native_lxc_behavior": "The application listens on the same container ports at its dedicated LXC address.",
|
||
"reason": "A native LXC has its own address and does not require Docker port NAT.",
|
||
"behavioral_impact": "Users open the LXC address instead of the Proxmox host address.",
|
||
"validation": "pending-per-application"
|
||
},
|
||
{
|
||
"id": "compose-environment-overlay",
|
||
"upstream_behavior": "Compose environment values override OCI image environment values.",
|
||
"native_lxc_behavior": "ProxMenux merges the same values into lxc.environment.runtime while the CT is stopped.",
|
||
"reason": "PVE imports image Env automatically; Compose values still need to override it.",
|
||
"behavioral_impact": "None expected.",
|
||
"validation": "pending-per-application"
|
||
},
|
||
{
|
||
"id": "stop-grace-period",
|
||
"upstream_behavior": "Docker waits for Compose stop_grace_period before forcing termination.",
|
||
"native_lxc_behavior": "ProxMenux records the same timeout for its pct shutdown lifecycle operations.",
|
||
"reason": "Proxmox has no equivalent per-CT persistent restart-policy field; startup.down is not a shutdown timeout.",
|
||
"behavioral_impact": "Normal Proxmox node shutdown remains governed by the node-wide shutdown policy.",
|
||
"validation": "not-requested-by-compose"
|
||
}
|
||
]
|
||
},
|
||
"compatibility": {
|
||
"automatic_install_candidate": true,
|
||
"validated": false,
|
||
"supported_compose_keys": [
|
||
"container_name",
|
||
"environment",
|
||
"image",
|
||
"ports",
|
||
"restart",
|
||
"stop_grace_period",
|
||
"volumes"
|
||
],
|
||
"untranslated_blockers": [],
|
||
"policy": "A generated template is never promoted to validated without install, health, restart and persistence tests."
|
||
},
|
||
"validation": {
|
||
"schema": "passed-at-generation",
|
||
"clean_install": "pending",
|
||
"service_health": "pending",
|
||
"restart_persistence": "pending",
|
||
"backup_restore": "pending",
|
||
"update_preserves_data": "pending"
|
||
},
|
||
"lifecycle": {
|
||
"update_strategy": "replace-rootfs-from-new-oci-image-preserve-managed-volumes",
|
||
"registry_state": {
|
||
"resolved_architecture": null,
|
||
"resolved_digest": null,
|
||
"image_version_label": null,
|
||
"image_created": null
|
||
},
|
||
"change_detection": "compare-resolved-architecture-digest",
|
||
"automatic_unattended_updates": false
|
||
}
|
||
}
|