{"repo":"joe-cole1/pangolin-ip-rule-manager","free":true,"listed":false,"github":"https://github.com/joe-cole1/pangolin-ip-rule-manager","clone":"git clone https://github.com/joe-cole1/pangolin-ip-rule-manager.git","description":"​Automatically manage temporary Pangolin IP bypass rules for devices that can't use SSO (like smart TVs). Bootstraps trust from authenticated devices using real-time role validation and a fail-closed security architecture.","language":"Python","stars":23,"topics":["access-control","crowdsec","ip-management","ip-whitelist","jellyfin","pangolin","python","self-hosted","sso-authentication"],"license":"MIT","category":"self-hosted-apps","readme_excerpt":"Pangolin IP Rule Manager A lightweight Python service that automatically manages Pangolin IP bypass rules and (optionally) CrowdSec allowlist entries based on observed client IPs. It bootstraps trust from an authenticated device (like a phone) to a device that cannot authenticate (like a TV), while honoring each user's role-based permissions in Pangolin. 🚨 BREAKING CHANGE: Upgrade Requirements Before upgrading to this version, make these changes: 1. Upgrade Badger to v1.4.1 or newer. Older versions do not send the Remote-User-Id value required to verify the user. 2. Add the List Users permission to the Pangolin API key used by this app. In Pangolin, open Organization → API Keys , select the key, open Permissions , enable List Users under Organization , and click Save . This changes the key's permissions but does not change the token value, so you do not need to replace PANGOLIN TOKEN . 3. Configure the required proxy secret. Set PROXY SHARED SECRET in the app and configure Pangolin to add the same value as the X-Proxy-Secret custom request header. Follow Set the Pangolin Proxy Secret. 4. Pull the new image and force-recreate the container. A normal restart does not replace a container that was created from an older image. Do not enable Allow All and do not use a root API key. Keep the API key limited to the permissions listed below. The old Get Organization User permission is not used by this version and may be removed after the upgrade. --- Table of Contents - 🚨 Breaking C","default_branch":null,"files":null,"tree":[],"storefront":"/r/joe-cole1","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/joe-cole1/pangolin-ip-rule-manager/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}