headscale/docs
Ryan Malloy da2878e8fb docs/oidc: warn about Authentik's built-in groups scope duplicating claims
Authentik 2025.8 ships a default 'groups' scope that emits the user's
ak_groups as the 'groups' claim automatically. Adding a custom scope
mapping with the same scope_name causes Authentik to concatenate
both emitters' output, producing duplicated group names in the
users.groups column.

Document the symptom and the fix, plus a sibling note that Keycloak
needs the opposite (explicit mapper required to emit anything).
2026-06-06 10:31:23 -06:00
..
about Add docs for policy-wide options and node attributes 2026-05-18 17:21:58 +02:00
assets Rewrite ACL docs as policy 2026-05-12 14:12:29 +02:00
ref docs/oidc: warn about Authentik's built-in groups scope duplicating claims 2026-06-06 10:31:23 -06:00
setup The headscale service is enabled by default 2026-05-18 17:21:58 +02:00
usage Update links to Tailscale documentation 2026-04-18 09:33:41 +02:00
index.md Remove redundant prefix 2026-05-12 14:12:29 +02:00
requirements.txt Switch to mkdocs-materialx 2026-03-25 22:30:03 +01:00