pub struct ApiConfig {
pub agent: Option<AgentFn>,
pub agent_ways: AgentWays,
pub public_url: Option<String>,
pub notifier: Option<Notifier>,
pub setup_token_file: Option<PathBuf>,
pub edge: Option<EdgeFn>,
pub providers: Vec<ProviderConfig>,
pub open_signup: bool,
pub audit: Option<Arc<AuditLog>>,
pub superadmin: Option<SuperadminFn>,
}Fields§
§agent: Option<AgentFn>Who is an org’s tailnet or Access agent. Asked last, and only for a request with no bearer token and no session cookie.
agent_ways: AgentWaysWhich front doors this server has, for agent_identity_list.
public_url: Option<String>Where users reach isb (https://isb.example.com), for the links in
invitations and resets. Without it the token alone is returned.
notifier: Option<Notifier>Delivers password resets. Without one, the reset token is written to stderr (the daemon’s journal) with a note saying so.
setup_token_file: Option<PathBuf>Where the first-run setup token is written while setup is needed.
edge: Option<EdgeFn>The person the front door verified, if any: who may claim setup without the token, and sign in with no password.
providers: Vec<ProviderConfig>External sign-in providers (they need public_url for their
callback URL).
open_signup: boolLet anyone with a verified email from a provider make an account. Off: after the first admin, accounts come by invitation.
audit: Option<Arc<AuditLog>>Where sign-ins, token, invitation, member and user changes are recorded.
superadmin: Option<SuperadminFn>Who is a superadmin. A superadmin is signed in as its principal (ahead of any session cookie) and is a platform admin here.