Hey selfhosters,

I’ve configured Authentik for my existing Traefik reverse proxy and documented the journey on my personal blog.

Documentation about Authentik was quite sparse or sometimes unclear, so I included many aspects like creating a local password policy or adding Azure AD as SSO source (Social Login).

I’ve also included the necessary steps to disable Authentik’s local authentication or password change option, if you plan on using and supporting Azure AD or any other Social Login source only. Your users will then be directly redirected to the social login’s auth component instead of Authentik’s login screen.

Hope this helps some people regarding setting up Authentik as IdP and configuring it properly. Enjoy!