2022-06-06 01:23:06 +02:00
<!DOCTYPE HTML>
< html lang = "en" class = "sidebar-visible no-js light" >
< head >
<!-- Book generated using mdBook -->
< meta charset = "UTF-8" >
< title > Kubernetes Ingress - Kanidm Administration< / title >
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
<!-- Custom HTML head -->
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
< meta name = "description" content = "" >
< meta name = "viewport" content = "width=device-width, initial-scale=1" >
< meta name = "theme-color" content = "#ffffff" / >
< link rel = "shortcut icon" href = "../favicon.png" >
< link rel = "stylesheet" href = "../css/variables.css" >
< link rel = "stylesheet" href = "../css/general.css" >
< link rel = "stylesheet" href = "../css/chrome.css" >
< link rel = "stylesheet" href = "../css/print.css" media = "print" >
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
<!-- Fonts -->
< link rel = "stylesheet" href = "../FontAwesome/css/font-awesome.css" >
< link rel = "stylesheet" href = "../fonts/fonts.css" >
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
<!-- Highlight.js Stylesheets -->
< link rel = "stylesheet" href = "../highlight.css" >
< link rel = "stylesheet" href = "../tomorrow-night.css" >
< link rel = "stylesheet" href = "../ayu-highlight.css" >
<!-- Custom theme stylesheets -->
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
< / head >
< body >
<!-- Provide site root to javascript -->
2022-12-04 23:16:42 +01:00
< script >
2022-06-06 01:23:06 +02:00
var path_to_root = "../";
var default_theme = window.matchMedia("(prefers-color-scheme: dark)").matches ? "navy" : "light";
< / script >
<!-- Work around some values being stored in localStorage wrapped in quotes -->
2022-12-04 23:16:42 +01:00
< script >
2022-06-06 01:23:06 +02:00
try {
var theme = localStorage.getItem('mdbook-theme');
var sidebar = localStorage.getItem('mdbook-sidebar');
if (theme.startsWith('"') & & theme.endsWith('"')) {
localStorage.setItem('mdbook-theme', theme.slice(1, theme.length - 1));
}
if (sidebar.startsWith('"') & & sidebar.endsWith('"')) {
localStorage.setItem('mdbook-sidebar', sidebar.slice(1, sidebar.length - 1));
}
} catch (e) { }
< / script >
<!-- Set the theme before any content is loaded, prevents flash -->
2022-12-04 23:16:42 +01:00
< script >
2022-06-06 01:23:06 +02:00
var theme;
try { theme = localStorage.getItem('mdbook-theme'); } catch(e) { }
if (theme === null || theme === undefined) { theme = default_theme; }
var html = document.querySelector('html');
html.classList.remove('no-js')
html.classList.remove('light')
html.classList.add(theme);
html.classList.add('js');
< / script >
<!-- Hide / unhide sidebar before it is displayed -->
2022-12-04 23:16:42 +01:00
< script >
2022-06-06 01:23:06 +02:00
var html = document.querySelector('html');
var sidebar = 'hidden';
if (document.body.clientWidth >= 1080) {
try { sidebar = localStorage.getItem('mdbook-sidebar'); } catch(e) { }
sidebar = sidebar || 'visible';
}
html.classList.remove('sidebar-visible');
html.classList.add("sidebar-" + sidebar);
< / script >
< nav id = "sidebar" class = "sidebar" aria-label = "Table of contents" >
< div class = "sidebar-scrollbox" >
2022-12-21 01:09:26 +01:00
< ol class = "chapter" > < li class = "chapter-item expanded " > < a href = "../intro.html" > < strong aria-hidden = "true" > 1.< / strong > Introduction to Kanidm< / a > < / li > < li class = "chapter-item expanded " > < a href = "../frequently_asked_questions.html" > < strong aria-hidden = "true" > 2.< / strong > Frequently Asked Questions< / a > < / li > < li class = "chapter-item expanded " > < a href = "../installing_the_server.html" > < strong aria-hidden = "true" > 3.< / strong > Installing the Server< / a > < / li > < li > < ol class = "section" > < li class = "chapter-item expanded " > < a href = "../choosing_a_domain_name.html" > < strong aria-hidden = "true" > 3.1.< / strong > Choosing a Domain Name< / a > < / li > < li class = "chapter-item expanded " > < a href = "../prepare_the_server.html" > < strong aria-hidden = "true" > 3.2.< / strong > Preparing for your Deployment< / a > < / li > < li class = "chapter-item expanded " > < a href = "../server_configuration.html" > < strong aria-hidden = "true" > 3.3.< / strong > Server Configuration and Install< / a > < / li > < li class = "chapter-item expanded " > < a href = "../server_update.html" > < strong aria-hidden = "true" > 3.4.< / strong > Server Updates< / a > < / li > < li class = "chapter-item expanded " > < a href = "../security_hardening.html" > < strong aria-hidden = "true" > 3.5.< / strong > Platform Security Hardening< / a > < / li > < / ol > < / li > < li class = "chapter-item expanded " > < a href = "../client_tools.html" > < strong aria-hidden = "true" > 4.< / strong > Client Tools< / a > < / li > < li > < ol class = "section" > < li class = "chapter-item expanded " > < a href = "../installing_client_tools.html" > < strong aria-hidden = "true" > 4.1.< / strong > Installing client tools< / a > < / li > < / ol > < / li > < li class = "chapter-item expanded " > < a href = "../administrivia.html" > < strong aria-hidden = "true" > 5.< / strong > Administration< / a > < / li > < li > < ol class = "section" > < li class = "chapter-item expanded " > < a href = "../accounts_and_groups.html" > < strong aria-hidden = "true" > 5.1.< / strong > Accounts and Groups< / a > < / li > < li class = "chapter-item expanded " > < a href = "../backup_restore.html" > < strong aria-hidden = "true" > 5.2.< / strong > Backup and Restore< / a > < / li > < li class = "chapter-item expanded " > < a href = "../database_maint.html" > < strong aria-hidden = "true" > 5.3.< / strong > Database Maintenance< / a > < / li > < li class = "chapter-item expanded " > < a href = "../domain_rename.html" > < strong aria-hidden = "true" > 5.4.< / strong > Domain Rename< / a > < / li > < li class = "chapter-item expanded " > < a href = "../monitoring.html" > < strong aria-hidden = "true" > 5.5.< / strong > Monitoring the platform< / a > < / li > < li class = "chapter-item expanded " > < a href = "../password_quality.html" > < strong aria-hidden = "true" > 5.6.< / strong > Password Quality and Badlisting< / a > < / li > < li class = "chapter-item expanded " > < a href = "../posix_accounts.html" > < strong aria-hidden = "true" > 5.7.< / strong > POSIX Accounts and Groups< / a > < / li > < li class = "chapter-item expanded " > < a href = "../ssh_key_dist.html" > < strong aria-hidden = "true" > 5.8.< / strong > SSH Key Distribution< / a > < / li > < li class = "chapter-item expanded " > < a href = "../recycle_bin.html" > < strong aria-hidden = "true" > 5.9.< / strong > The Recycle Bin< / a > < / li > < li class = "chapter-item expanded " > < a href = "../why_tls.html" > < strong aria-hidden = "true" > 5.10.< / strong > Why TLS?< / a > < / li > < / ol > < / li > < li class = "chapter-item expanded " > < a href = "../troubleshooting.html" > < strong aria-hidden = "true" > 6.< / strong > Troubleshooting< / a > < / li > < li class = "chapter-item expanded " > < a href = "../glossary.html" > < strong aria-hidden = "true" > 7.< / strong > Glossary of Technical Terms< / a > < / li > < li class = "chapter-item expanded affix " > < li class = "part-title" > Services< / li > < li class = "chapter-item expanded " > < a href = "../integrations/oauth2.html" > < strong aria-hidden = "true" > 8.< / strong > Oauth2< / a > < / li > < li class = "chapter-item expanded " > < a href = "../integrations/pam_and_nsswitch.html" > < strong aria-hidden = "true" > 9.< / strong > PAM and nsswitch< / a > < / li > < li class = "chapter-item expanded " > < a href = "../integrations/radius.html" > < strong aria-hidden = "true" > 10.< / strong > RADIUS< / a > < / li > < li class = "chapter-item expanded " > < a href = "../integrations/ldap.html" > < strong aria-hidden = "true" > 11.< / strong > LDAP< / a > < / li > < li class = "chapter-item expanded affix " > < li class = "part-title" > Synchronisation< / li > < li class = "chapter-item expanded " > < a href = "../sync/concepts.html" > < str
2022-06-06 01:23:06 +02:00
< / div >
< div id = "sidebar-resize-handle" class = "sidebar-resize-handle" > < / div >
< / nav >
< div id = "page-wrapper" class = "page-wrapper" >
< div class = "page" >
2022-12-15 07:26:33 +01:00
< div id = "menu-bar-hover-placeholder" > < / div >
2022-06-06 01:23:06 +02:00
< div id = "menu-bar" class = "menu-bar sticky bordered" >
< div class = "left-buttons" >
< button id = "sidebar-toggle" class = "icon-button" type = "button" title = "Toggle Table of Contents" aria-label = "Toggle Table of Contents" aria-controls = "sidebar" >
< i class = "fa fa-bars" > < / i >
< / button >
< button id = "theme-toggle" class = "icon-button" type = "button" title = "Change theme" aria-label = "Change theme" aria-haspopup = "true" aria-expanded = "false" aria-controls = "theme-list" >
< i class = "fa fa-paint-brush" > < / i >
< / button >
< ul id = "theme-list" class = "theme-popup" aria-label = "Themes" role = "menu" >
2022-12-04 23:16:42 +01:00
< li role = "none" > < button role = "menuitem" class = "theme" id = "light" > Light< / button > < / li >
2022-06-06 01:23:06 +02:00
< li role = "none" > < button role = "menuitem" class = "theme" id = "rust" > Rust< / button > < / li >
< li role = "none" > < button role = "menuitem" class = "theme" id = "coal" > Coal< / button > < / li >
< li role = "none" > < button role = "menuitem" class = "theme" id = "navy" > Navy< / button > < / li >
< li role = "none" > < button role = "menuitem" class = "theme" id = "ayu" > Ayu< / button > < / li >
< / ul >
< button id = "search-toggle" class = "icon-button" type = "button" title = "Search. (Shortkey: s)" aria-label = "Toggle Searchbar" aria-expanded = "false" aria-keyshortcuts = "S" aria-controls = "searchbar" >
< i class = "fa fa-search" > < / i >
< / button >
< / div >
< h1 class = "menu-title" > Kanidm Administration< / h1 >
< div class = "right-buttons" >
< a href = "../print.html" title = "Print this book" aria-label = "Print this book" >
< i id = "print-button" class = "fa fa-print" > < / i >
< / a >
2022-07-05 03:51:41 +02:00
< a href = "https://github.com/kanidm/kanidm" title = "Git repository" aria-label = "Git repository" >
< i id = "git-repository-button" class = "fa fa-github" > < / i >
< / a >
< a href = "https://github.com/kanidm/kanidm/edit/master/kanidm_book/src/examples/k8s_ingress_example.md" title = "Suggest an edit" aria-label = "Suggest an edit" >
< i id = "git-edit-button" class = "fa fa-edit" > < / i >
< / a >
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
< / div >
< / div >
< div id = "search-wrapper" class = "hidden" >
< form id = "searchbar-outer" class = "searchbar-outer" >
< input type = "search" id = "searchbar" name = "searchbar" placeholder = "Search this book ..." aria-controls = "searchresults-outer" aria-describedby = "searchresults-header" >
< / form >
< div id = "searchresults-outer" class = "searchresults-outer hidden" >
< div id = "searchresults-header" class = "searchresults-header" > < / div >
< ul id = "searchresults" >
< / ul >
< / div >
< / div >
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
<!-- Apply ARIA attributes after the sidebar and the sidebar toggle button are added to the DOM -->
2022-12-04 23:16:42 +01:00
< script >
2022-06-06 01:23:06 +02:00
document.getElementById('sidebar-toggle').setAttribute('aria-expanded', sidebar === 'visible');
document.getElementById('sidebar').setAttribute('aria-hidden', sidebar !== 'visible');
Array.from(document.querySelectorAll('#sidebar a')).forEach(function(link) {
link.setAttribute('tabIndex', sidebar === 'visible' ? 0 : -1);
});
< / script >
< div id = "content" class = "content" >
< main >
< h1 id = "kubernetes-ingress" > < a class = "header" href = "#kubernetes-ingress" > Kubernetes Ingress< / a > < / h1 >
< p > Guard your Kubernetes ingress with Kanidm authentication and authorization.< / p >
< h2 id = "prerequisites" > < a class = "header" href = "#prerequisites" > Prerequisites< / a > < / h2 >
< p > We recommend you have the following before continuing:< / p >
< ul >
< li > < a href = "../installing_the_server.html" > Kanidm< / a > < / li >
< li > < a href = "https://docs.k0sproject.io/v1.23.6+k0s.2/install/" > Kubernetes v1.23 or above< / a > < / li >
< li > < a href = "https://kubernetes.github.io/ingress-nginx/deploy/" > Nginx Ingress< / a > < / li >
< li > A fully qualified domain name with an A record pointing to your k8s ingress.< / li >
< li > < a href = "https://cert-manager.io/docs/installation/" > CertManager with a Cluster Issuer installed.< / a > < / li >
< / ul >
< h2 id = "instructions" > < a class = "header" href = "#instructions" > Instructions< / a > < / h2 >
< ol >
< li >
< p > Create a Kanidm account and group:< / p >
< ol >
< li > Create a Kanidm account. Please see the section < a href = "../accounts_and_groups.html" > Creating Accounts< / a > .< / li >
< li > Give the account a password. Please see the section < a href = "../accounts_and_groups.html" > Resetting Account Credentials< / a > .< / li >
< li > Make the account a person. Please see the section < a href = "../accounts_and_groups.html" > People Accounts< / a > .< / li >
< li > Create a Kanidm group. Please see the section < a href = "../accounts_and_groups.html" > Creating Accounts< / a > .< / li >
< li > Add the account you created to the group you create. Please see the section < a href = "../accounts_and_groups.html" > Creating Accounts< / a > .< / li >
< / ol >
< / li >
< li >
< p > Create a Kanidm OAuth2 resource:< / p >
< ol >
2022-12-15 14:24:26 +01:00
< li > Create the OAuth2 resource for your domain. Please see the section < a href = "../integrations/oauth2.html" > Create the Kanidm Configuration< / a > .< / li >
< li > Add a scope mapping from the resource you created to the group you create with the openid, profile, and email scopes. Please see the section < a href = "../integrations/oauth2.html" > Create the Kanidm Configuration< / a > .< / li >
2022-06-06 01:23:06 +02:00
< / ol >
< / li >
< li >
< p > Create a < code > Cookie Secret< / code > to for the placeholder < code > < COOKIE_SECRET> < / code > in step 4:< / p >
< pre > < code class = "language-shell" > docker run -ti --rm python:3-alpine python -c 'import secrets,base64; print(base64.b64encode(base64.b64encode(secrets.token_bytes(16))).decode(" utf-8" ));'
< / code > < / pre >
< / li >
< li >
< p > Create a file called < code > k8s.kanidm-nginx-auth-example.yaml< / code > with the block below. Replace every < code > < string> < / code > (drop the < code > < > < / code > ) with appropriate values:< / p >
< ol >
< li > < code > < FQDN> < / code > : The fully qualified domain name with an A record pointing to your k8s ingress.< / li >
< li > < code > < KANIDM_FQDN> < / code > : The fully qualified domain name of your Kanidm deployment.< / li >
< li > < code > < COOKIE_SECRET> < / code > : The output from step 3.< / li >
2022-12-15 14:24:26 +01:00
< li > < code > < OAUTH2_RS_NAME> < / code > : Please see the output from step 2.1 or < a href = "../integrations/oauth2.html" > get< / a > the OAuth2 resource you create from that step.< / li >
< li > < code > < OAUTH2_RS_BASIC_SECRET> < / code > : Please see the output from step 2.1 or < a href = "../integrations/oauth2.html" > get< / a > the OAuth2 resource you create from that step.< / li >
2022-06-06 01:23:06 +02:00
< / ol >
< p > This will deploy the following to your cluster:< / p >
< ul >
< li > < a href = "https://github.com/modem7/docker-starwars" > modem7/docker-starwars< / a > - An example web site.< / li >
< li > < a href = "https://oauth2-proxy.github.io/oauth2-proxy/" > OAuth2 Proxy< / a > - A OAuth2 proxy is used as an OAuth2 client with NGINX < a href = "https://docs.nginx.com/nginx/admin-guide/security-controls/configuring-subrequest-authentication/" > Authentication Based on Subrequest Result< / a > .< / li >
< / ul >
< pre > < code class = "language-yaml" > ---
apiVersion: v1
kind: Namespace
metadata:
name: kanidm-example
labels:
pod-security.kubernetes.io/enforce: restricted
---
apiVersion: apps/v1
kind: Deployment
metadata:
namespace: kanidm-example
name: website
labels:
app: website
spec:
revisionHistoryLimit: 1
replicas: 1
selector:
matchLabels:
app: website
template:
metadata:
labels:
app: website
spec:
containers:
- name: website
image: modem7/docker-starwars
imagePullPolicy: Always
ports:
- containerPort: 8080
securityContext:
allowPrivilegeEscalation: false
capabilities:
drop: [" ALL" ]
securityContext:
runAsNonRoot: true
seccompProfile:
type: RuntimeDefault
---
apiVersion: v1
kind: Service
metadata:
namespace: kanidm-example
name: website
spec:
selector:
app: website
ports:
- protocol: TCP
port: 8080
targetPort: 8080
---
apiVersion: networking.k8s.io/v1
kind: Ingress
metadata:
annotations:
cert-manager.io/cluster-issuer: lets-encrypt-cluster-issuer
nginx.ingress.kubernetes.io/auth-url: " https://$host/oauth2/auth"
nginx.ingress.kubernetes.io/auth-signin: " https://$host/oauth2/start?rd=$escaped_request_uri"
name: website
namespace: kanidm-example
spec:
ingressClassName: nginx
tls:
- hosts:
- < FQDN>
secretName: < FQDN> -ingress-tls # replace . with - in the hostname
rules:
- host: < FQDN>
http:
paths:
- path: /
pathType: Prefix
backend:
service:
name: website
port:
number: 8080
---
apiVersion: apps/v1
kind: Deployment
metadata:
labels:
k8s-app: oauth2-proxy
name: oauth2-proxy
namespace: kanidm-example
spec:
replicas: 1
selector:
matchLabels:
k8s-app: oauth2-proxy
template:
metadata:
labels:
k8s-app: oauth2-proxy
spec:
containers:
- args:
- --provider=oidc
- --email-domain=*
- --upstream=file:///dev/null
- --http-address=0.0.0.0:4182
- --oidc-issuer-url=https://< KANIDM_FQDN> /oauth2/openid/< OAUTH2_RS_NAME>
- --code-challenge-method=S256
env:
- name: OAUTH2_PROXY_CLIENT_ID
value: < OAUTH2_RS_NAME>
- name: OAUTH2_PROXY_CLIENT_SECRET
value: < OAUTH2_RS_BASIC_SECRET>
- name: OAUTH2_PROXY_COOKIE_SECRET
value: < COOKIE_SECRET>
image: quay.io/oauth2-proxy/oauth2-proxy:latest
imagePullPolicy: Always
name: oauth2-proxy
ports:
- containerPort: 4182
protocol: TCP
securityContext:
allowPrivilegeEscalation: false
capabilities:
drop: [" ALL" ]
securityContext:
runAsNonRoot: true
seccompProfile:
type: RuntimeDefault
---
apiVersion: v1
kind: Service
metadata:
labels:
k8s-app: oauth2-proxy
name: oauth2-proxy
namespace: kanidm-example
spec:
ports:
- name: http
port: 4182
protocol: TCP
targetPort: 4182
selector:
k8s-app: oauth2-proxy
---
apiVersion: networking.k8s.io/v1
kind: Ingress
metadata:
name: oauth2-proxy
namespace: kanidm-example
spec:
ingressClassName: nginx
rules:
- host: < FQDN>
http:
paths:
- path: /oauth2
pathType: Prefix
backend:
service:
name: oauth2-proxy
port:
number: 4182
tls:
- hosts:
- < FQDN>
secretName: < FQDN> -ingress-tls # replace . with - in the hostname
< / code > < / pre >
< / li >
< li >
< p > Apply the configuration by running the following command:< / p >
< pre > < code class = "language-shell" > kubectl apply -f k8s.kanidm-nginx-auth-example.yaml
< / code > < / pre >
< / li >
< li >
< p > Check your deployment succeeded by running the following commands:< / p >
< pre > < code class = "language-shell" > kubectl -n kanidm-example get all
kubectl -n kanidm-example get ingress
kubectl -n kanidm-example get Certificate
< / code > < / pre >
< p > You may use kubectl's describe and log for troubleshooting. If there are ingress errors see the Ingress NGINX documentation's < a href = "https://kubernetes.github.io/ingress-nginx/troubleshooting/" > troubleshooting page< / a > . If there are certificate errors see the CertManger documentation's < a href = "https://cert-manager.io/docs/faq/troubleshooting/" > troubleshooting page< / a > .< / p >
< p > Once it has finished deploying, you will be able to access it at < code > https://< FQDN> < / code > which will prompt you for authentication.< / p >
< / li >
< / ol >
< h2 id = "cleaning-up" > < a class = "header" href = "#cleaning-up" > Cleaning Up< / a > < / h2 >
< ol >
< li >
< p > Remove the resources create for this example from k8s:< / p >
< pre > < code class = "language-shell" > kubectl delete namespace kanidm-example
< / code > < / pre >
< / li >
< li >
< p > Remove the objects created for this example from Kanidm:< / p >
< ol >
< li > Delete the account created in section Instructions step 1.< / li >
< li > Delete the group created in section Instructions step 2.< / li >
< li > Delete the OAuth2 resource created in section Instructions step 3.< / li >
< / ol >
< / li >
< / ol >
< h2 id = "references" > < a class = "header" href = "#references" > References< / a > < / h2 >
< ol >
< li > < a href = "https://kubernetes.github.io/ingress-nginx/examples/auth/oauth-external-auth/" > NGINX Ingress Controller: External OAUTH Authentication< / a > < / li >
< li > < a href = "https://oauth2-proxy.github.io/oauth2-proxy/docs/configuration/oauth_provider#openid-connect-provider" > OAuth2 Proxy: OpenID Connect Provider< / a > < / li >
< / ol >
< / main >
< nav class = "nav-wrapper" aria-label = "Page navigation" >
<!-- Mobile navigation buttons -->
2022-12-21 01:09:26 +01:00
< a rel = "prev" href = "../sync/freeipa.html" class = "mobile-nav-chapters previous" title = "Previous chapter" aria-label = "Previous chapter" aria-keyshortcuts = "Left" >
2022-06-06 01:23:06 +02:00
< i class = "fa fa-angle-left" > < / i >
< / a >
2022-12-15 07:26:33 +01:00
2022-11-23 14:53:51 +01:00
< a rel = "next" href = "../integrations/traefik.html" class = "mobile-nav-chapters next" title = "Next chapter" aria-label = "Next chapter" aria-keyshortcuts = "Right" >
2022-07-20 09:37:37 +02:00
< i class = "fa fa-angle-right" > < / i >
< / a >
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
< div style = "clear: both" > < / div >
< / nav >
< / div >
< / div >
< nav class = "nav-wide-wrapper" aria-label = "Page navigation" >
2022-12-21 01:09:26 +01:00
< a rel = "prev" href = "../sync/freeipa.html" class = "nav-chapters previous" title = "Previous chapter" aria-label = "Previous chapter" aria-keyshortcuts = "Left" >
2022-06-06 01:23:06 +02:00
< i class = "fa fa-angle-left" > < / i >
< / a >
2022-12-15 07:26:33 +01:00
2022-11-23 14:53:51 +01:00
< a rel = "next" href = "../integrations/traefik.html" class = "nav-chapters next" title = "Next chapter" aria-label = "Next chapter" aria-keyshortcuts = "Right" >
2022-07-20 09:37:37 +02:00
< i class = "fa fa-angle-right" > < / i >
< / a >
2022-06-06 01:23:06 +02:00
< / nav >
< / div >
2022-12-15 07:26:33 +01:00
2022-12-04 23:16:42 +01:00
< script >
2022-06-06 01:23:06 +02:00
window.playground_copyable = true;
< / script >
2022-12-15 07:26:33 +01:00
2022-12-04 23:16:42 +01:00
< script src = "../elasticlunr.min.js" > < / script >
< script src = "../mark.min.js" > < / script >
< script src = "../searcher.js" > < / script >
2022-12-15 07:26:33 +01:00
2022-12-04 23:16:42 +01:00
< script src = "../clipboard.min.js" > < / script >
< script src = "../highlight.js" > < / script >
< script src = "../book.js" > < / script >
2022-06-06 01:23:06 +02:00
<!-- Custom JS scripts -->
2022-12-15 07:26:33 +01:00
2022-06-06 01:23:06 +02:00
< / body >
< / html >