# Internal certificate. Install Caddy's root cert on office PCs once.
{
  local_certs
}

desk.office.lan {
  basic_auth {
    # caddy hash-password --plaintext 'their-password'
    sara   $2a$14$REPLACE_WITH_HASH
    omar   $2a$14$REPLACE_WITH_HASH
    comply $2a$14$REPLACE_WITH_HASH
  }
  reverse_proxy app:8000 {
    header_up X-User {http.auth.user.id}
  }
}

chat.office.lan {
  reverse_proxy chat:8080
}
