docker: services: lam: image: ghcr.io/ldapaccountmanager/lam version: latest oauth2_proxy: application: application port: 80 allowed_groups: - "/roles/web-app-lam-administrator" features: matomo: true css: true port-ui-desktop: true ldap: true oauth2: true logout: true server: csp: flags: style-src: unsafe-inline: true script-src-elem: unsafe-inline: true unsafe-eval: true script-src: unsafe-inline: true domains: aliases: - "ldap.{{PRIMARY_DOMAIN}}" canonical: - lam.{{ PRIMARY_DOMAIN }}