Skip to content

HOMER auth

Lorenzo Mangani edited this page Oct 28, 2021 · 7 revisions

HOMER Authentication

Local (default)

By default, HOMER uses its internal database for users and permissions:

 "auth_settings": {
    "_comment": "The type param can be internal, ldap, http_auth",
    "token_expire": 1200,
    "type": "internal"


The following example contains an LDAP integration template for generic services:

"auth_settings": {
    "token_expire": 1200,
    "type": "ldap"
"ldap_config": {
    "admingroup": "admin",
    "adminmode": true,
    "anonymous": false,
    "attributes": [
    "base": "dc=example,dc=com",
    "binddn": "uid=readonlysuer,ou=People,dc=example,dc=com",
    "bindpassword": "readonlypassword",
    "groupattribute": "cn",
    "groupfilter": "(memberUid=%s)",
    "host": "",
    "port": 389,
    "skiptls": true,
    "skipverify": true,
    "userdn": "uid=%s,ou=People,dc=example,dc=com",
    "userfilter": "(uid=%s)",
    "usergroup": "HOMER_user",
    "usermode": true,
    "usessl": false


Authentication can be delegated to an external API using the HTTP AUTH type and JSON User objects

"auth_settings": {
    "token_expire": 1200,
    "type": "http_auth"
"http_auth": {
    "skipverify": true,
    "url": "http://localhost:1323"


The following example contains an OAuth2 integration with a generic service. This works in parallel to other methods.

"oauth2": {
    "enable": true,
    "client_id": "",
    "project_id": "Homer OAuth",
    "auth_uri": "",
    "token_uri": "",
    "auth_provider_x509_cert_url":  "",
    "redirect_uri": "http://YOUR_HOMER_URL/api/v3/oauth2/auth",
    "profile_uri": "",
    "provider_name": "google",
    "provider_image": ""
Clone this wiki locally