################################################################################
#
# Apache2 shibboleth authentication file.
#
# The OpenID Connect authentication file contains configuration options that
# allow authentication against the bwidm.de OIDC servers. It can be included
# from within a <Directory> but not from a .htaccess file. A common setup would
# be:
#
#   Include			/etc/apache2/include/auth_oidc
#   OIDCClientID		<client-id>
#   OIDCClientSecret		<client-secret>
#   OIDCCryptoPassphrase	<random>
#   OIDCRedirectURI		/<path>/redirect_uri
#
# and later on, possibly in a <Directory> or even <Location>:
#
#   AuthType			openid-connect
#   Require			valid-user
#
# <path> would be omitted if a whole server is involved, or it's the URL-path to
# the protected ressource in case of a <Directory> or <Location>. Further info:
# https://github.com/OpenIDC/mod_auth_openidc#user-content-how-to-use-it

<IfModule auth_openidc_module>
	OIDCProviderMetadataURL	https://login.bwidm.de/oidc/realms/bwidm_de/.well-known/openid-configuration
</IfModule>
