1.5 KiB
1.5 KiB
| title | description | published | date | tags | editor | dateCreated |
|---|---|---|---|---|---|---|
| Audit - authentik.yaml | Gremlin audit report 2026-04-03 | true | 2026-04-03T02:36:24.241Z | gremlin,audit | markdown | 2026-04-03T02:36:24.241Z |
Audit Report — authentik.yaml
Date: 2026-04-03
File: swarm/authentik.yaml
Type: Docker Swarm
Verdict: FAIL
SWARM AUDIT REPORT
-
Homepage labels
homepage.group: PASShomepage.name: PASShomepage.icon: PASShomepage.href: PASShomepage.description: PASS
-
Uptime Kuma labels
- No Uptime Kuma service found, hence no labels to check.
-
Caddy labels on exposed services
caddy=auth.netgrimoire.comandcaddy.reverse_proxy="{{upstreams 9000}}": PASS
-
Placement constraints
node.hostname == znas: PASS for all services
-
Volumes use /DockerVol/ path convention
/DockerVol/Authentik/Postgres,/DockerVol/Authentik/redis,/DockerVol/Authentik/media,/DockerVol/Authentik/custom-templates: PASS/var/run/docker.sockforworkerservice: FAIL
-
Network references external netgrimoire overlay
netgrimoirenetwork is referenced by bothauthentikandworkerservices, and it is set toexternal: true: PASS
Fixes Required
- Update the
workerservice volume/var/run/docker.sock:/var/run/docker.sockto match the convention by using a Docker volume or bind mount with/DockerVol/Authentik/docker.sock.
VERDICT: FAIL