anonpenguin23 fd87eec476 feat(security): add manifest signing, TLS TOFU, refresh token migration
- Invalidate plaintext refresh tokens (migration 019)
- Add `--sign` flag to `orama build` for rootwallet manifest signing
- Add `--ca-fingerprint` TOFU verification for production joins/invites
- Save cluster secrets from join (RQLite auth, Olric key, IPFS peers)
- Add RQLite auth config fields
2026-02-28 15:40:43 +02:00

21 lines
435 B
YAML

server:
bindAddr: "{{.ServerBindAddr}}"
bindPort: {{.HTTPPort}}
memberlist:
environment: {{.MemberlistEnvironment}}
bindAddr: "{{.MemberlistBindAddr}}"
bindPort: {{.MemberlistPort}}
{{- if .MemberlistAdvertiseAddr}}
advertiseAddr: "{{.MemberlistAdvertiseAddr}}"
{{- end}}
{{- if .Peers}}
peers:
{{- range .Peers}}
- "{{.}}"
{{- end}}
{{- end}}
{{- if .EncryptionKey}}
encryptionKey: "{{.EncryptionKey}}"
{{- end}}