authentik-automation[bot]
2fedc3d0a0
release: 2025.10.2
version/2025.10.2
2025-11-19 15:07:06 +00:00
authentik-automation[bot]
7f0b45f921
website/docs: add 2025.8.5 and 2025.10.2 release notes (cherry-pick #18268 to version-2025.10) ( #18270 )
...
website/docs: add 2025.8.5 and 2025.10.2 release notes (#18268 )
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-19 15:29:42 +01:00
authentik-automation[bot]
3905c281ad
internal: Automated internal backport: 5000-sidebar.sec.patch to authentik-2025.10 ( #18260 )
...
Automated internal backport of patch 5000-sidebar.sec.patch to authentik-2025.10
Co-authored-by: authentik-automation[bot] <135050075+authentik-automation[bot]@users.noreply.github.com>
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-19 15:10:38 +01:00
authentik-automation[bot]
e6099d43f5
internal: Automated internal backport: 1498-oauth2-cc-user-active.sec.patch to authentik-2025.10 ( #18259 )
...
Automated internal backport of patch 1498-oauth2-cc-user-active.sec.patch to authentik-2025.10
Co-authored-by: authentik-automation[bot] <135050075+authentik-automation[bot]@users.noreply.github.com>
2025-11-19 14:51:31 +01:00
authentik-automation[bot]
a91145bc7b
internal: Automated internal backport: 1487-invitation-expiry.sec.patch to authentik-2025.10 ( #18258 )
...
Automated internal backport of patch 1487-invitation-expiry.sec.patch to authentik-2025.10
Co-authored-by: authentik-automation[bot] <135050075+authentik-automation[bot]@users.noreply.github.com>
2025-11-19 14:51:03 +01:00
authentik-automation[bot]
3f38d5c7d9
stages/prompt: fix choices with labels causing error on submit (cherry-pick #18183 to version-2025.10) ( #18236 )
...
stages/prompt: fix choices with labels causing error on submit (#18183 )
* stages/prompt: fix choices with labels causing error on submit
* fix tests
---------
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-18 18:33:10 +01:00
authentik-automation[bot]
c00df0573c
website/docs: update application description (cherry-pick #18125 to version-2025.10) ( #18127 )
...
website/docs: update application description (#18125 )
Update due to 2025.10 changes
Co-authored-by: Dewi Roberts <dewi@goauthentik.io >
2025-11-18 16:34:55 +00:00
authentik-automation[bot]
c3a0edee00
website/docs: Add instructions for installing RC versions (cherry-pick #18099 to version-2025.10) ( #18193 )
...
Co-authored-by: Marcelo Elizeche Landó <marcelo@goauthentik.io >
Co-authored-by: Dewi Roberts <dewi@goauthentik.io >
Co-authored-by: Tana M Berry <tanamarieberry@yahoo.com >
Co-authored-by: Dominic R <dominic@sdko.org >
2025-11-17 23:52:39 +00:00
authentik-automation[bot]
8b81ca36ea
web/sfe: downgrade bootstrap that was accidentally upgraded (cherry-pick #18157 to version-2025.10) ( #18171 )
...
* Cherry-pick #18157 to version-2025.10 (with conflicts)
This cherry-pick has conflicts that need manual resolution.
Original PR: #18157
Original commit: 4caece7fef
* fix conflict
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
---------
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-16 20:03:40 +01:00
authentik-automation[bot]
698de68a36
web: Disable library <datalist> on Firefox. (cherry-pick #18103 to version-2025.10) ( #18135 )
...
Cherry-pick #18103 to version-2025.10 (with conflicts)
This cherry-pick has conflicts that need manual resolution.
Original PR: #18103
Original commit: 1115e6f
Co-authored-by: Teffen Ellis <teffen@goauthentik.io >
Co-authored-by: Teffen Ellis <592134+GirlBossRush@users.noreply.github.com >
2025-11-14 19:41:50 +01:00
authentik-automation[bot]
db35593b24
packages/django-channels-postgres/layer: fix query when subscribed to multiple channels (cherry-pick #18152 to version-2025.10) ( #18153 )
...
packages/django-channels-postgres/layer: fix query when subscribed to multiple channels (#18152 )
Signed-off-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
2025-11-14 19:41:12 +01:00
authentik-automation[bot]
445fa31b57
web/admin: link to user on invitation list page (cherry-pick #18132 to version-2025.10) ( #18134 )
...
web/admin: link to user on invitation list page (#18132 )
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-13 22:38:06 +01:00
authentik-automation[bot]
a9aa1bf2c2
web/flows: improvements for hCaptcha (cherry-pick #16882 to version-2025.10) ( #18128 )
...
web/flows: improvements for hCaptcha (#16882 )
* improvements for hCaptcha
Issue #16755
* web: Format.
---------
Co-authored-by: Tealk <12276250+Tealk@users.noreply.github.com >
Co-authored-by: Teffen Ellis <teffen@goauthentik.io >
2025-11-13 21:02:26 +01:00
authentik-automation[bot]
d018f0381c
packages/django-dramatiq-postgres: broker: ensure locking happens with the same connection (cherry-pick #18095 to version-2025.10) ( #18119 )
...
packages/django-dramatiq-postgres: broker: ensure locking happens with the same connection (#18095 )
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
2025-11-13 17:18:13 +00:00
authentik-automation[bot]
7dd1cd5c59
website/docs: fix wording in stages overview (cherry-pick #18061 to version-2025.10) ( #18120 )
...
website/docs: fix wording in stages overview (#18061 )
Change flow to stage
Co-authored-by: Dewi Roberts <dewi@goauthentik.io >
2025-11-13 16:03:31 +00:00
authentik-automation[bot]
c219a6804a
web: Fix tab activation, blank provider URLs (cherry-pick #18031 to version-2025.10) ( #18101 )
...
web: Fix tab activation, blank provider URLs (#18031 )
web: Fix tab activation.
Co-authored-by: Teffen Ellis <592134+GirlBossRush@users.noreply.github.com >
2025-11-13 12:47:38 +01:00
authentik-automation[bot]
d9310d04b0
web: Fix RAC modal visibility. (cherry-pick #17941 to version-2025.10) ( #18097 )
...
web: Fix RAC modal visibility. (#17941 )
Co-authored-by: Teffen Ellis <592134+GirlBossRush@users.noreply.github.com >
Co-authored-by: Jens Langhammer <jens@goauthentik.io >
2025-11-12 23:22:02 +01:00
authentik-automation[bot]
f471ef0e2e
cmd/server/healthcheck: remove worker HTTP healthcheck (cherry-pick #18090 to version-2025.10) ( #18091 )
...
cmd/server/healthcheck: remove worker HTTP healthcheck (#18090 )
* cmd/server/healthcheck: remove worker HTTP healthcheck
* lint
---------
Signed-off-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
2025-11-12 16:12:17 +01:00
authentik-automation[bot]
31a010c108
core: improve app launch URL formatting (cherry-pick #18076 to version-2025.10) ( #18087 )
...
core: improve app launch URL formatting (#18076 )
* core: improve app launch URL formatting
* format
---------
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-12 13:06:46 +01:00
authentik-automation[bot]
96e6ab291e
providers/scim: allow custom schema data (cherry-pick #18073 to version-2025.10) ( #18075 )
...
providers/scim: allow custom schema data (#18073 )
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-12 00:54:08 +01:00
authentik-automation[bot]
ebf68311c2
events: fix timezone not set for log events (cherry-pick #18067 to version-2025.10) ( #18071 )
...
events: fix timezone not set for log events (#18067 )
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-11 21:20:06 +01:00
Jens L.
fd365b2a09
ci: revert to upstream GHA for release ( #18058 ) ( #18065 )
...
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
2025-11-11 18:50:24 +01:00
authentik-automation[bot]
41104da41f
ci: attempt to fix integration tests using dind (cherry-pick #18066 to version-2025.10) ( #18069 )
...
ci: attempt to fix integration tests using dind (#18066 )
* ci: attempt to fix integration tests using dind
* bump dind version
---------
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-11 18:18:53 +01:00
authentik-automation[bot]
7edebdec03
website/docs: update discord social login script example (cherry-pick #18026 to version-2025.10) ( #18057 )
...
website/docs: update discord social login script example (#18026 )
update the guild membership example to no longer cause an exception from a missing import.
Closes #18025
Signed-off-by: TMUniversal <10200399+TMUniversal@users.noreply.github.com >
Co-authored-by: TMUniversal <10200399+TMUniversal@users.noreply.github.com >
2025-11-11 13:02:48 +01:00
authentik-automation[bot]
fb56a54eb1
website/release notes: fix broken urls (cherry-pick #18041 to version-2025.10) ( #18044 )
...
website/release notes: fix broken urls (#18041 )
* website: fix bad escaping of URLs in release notes
## What
Fixes bad escaping of URLs in the release notes that resulted in mangled output.
v2024.6.4 had entries that looked like this:
```
##### `GET` /providers/google_workspace/{#123;id}#125;/
```
v2025.4.md had entries that looked like this:
```
##### `GET` /policies/unique_password/{#125;#123;policy_uuid}/
```
A couple of straightforward search-and-replaces has fixed the issue.
## Notes
Two of the release notes had bad escaping of URLs. I'm not sure how the error was made or got past,
but it was obvious when visiting the page.
@Beryju suggested that the bug is due to our using `{...}` to symbolize parameters in a URL while
Docusaurus wants to interpret `{...}` as an internal template instruction, resulting in odd
behavior. In either case, docusarus interpreted the hashtagged entries as links to unrelated issues
in Github (the same two issues, which were "bump version of pylint" and "bump version of sentry"),
which could be very confusing.
The inconsistencies between the two releases, and the working releases, suggests that the error was
introduced manually.
Co-authored-by: Ken Sternberg <133134217+kensternberg-authentik@users.noreply.github.com >
2025-11-10 15:50:29 -05:00
Jens L.
31cd6eb8ce
ci: fix migrate-from-stable for old versions ( #18019 ) ( #18024 )
...
ci: better logic for picking previous stable version
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
2025-11-10 15:56:45 +01:00
authentik-automation[bot]
092c5eb33c
website/docs: updates img-src csp (cherry-pick #18010 to version-2025.10) ( #18012 )
2025-11-06 21:11:37 +00:00
authentik-automation[bot]
3e41bba54d
core: bump django from 5.2.7 to 5.2.8 (cherry-pick #17967 to version-2025.10) ( #18003 )
...
core: bump django from 5.2.7 to 5.2.8 (#17967 )
* bump django from 5.2.7 to 5.2.8
* longer urls
* add debug statements
* Remove debug statements
* import MAX_URL_LENGTH constant from django.http.response
---------
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Marcelo Elizeche Landó <marcelo@goauthentik.io >
Co-authored-by: Jens Langhammer <jens@goauthentik.io >
2025-11-06 15:50:16 +01:00
authentik-automation[bot]
9f8fd6eabe
website/docs: remove broken info box and fix sentence (cherry-pick #17963 to version-2025.10) ( #17965 )
...
webiste/docs: remove broken info box and fix sentence (#17963 )
Remove broken info box and fix sentence.
Co-authored-by: Dewi Roberts <dewi@goauthentik.io >
2025-11-05 15:29:14 +00:00
authentik-automation[bot]
35fb55da15
website/docs: added Note about email_verified scope mapping is set to false by default (cherry-pick #17942 to version-2025.10) ( #17961 )
...
website/docs: added Note about email_verified scope mapping is set to false by default (#17942 )
* added Note about email_verified set to false
* Update website/docs/add-secure-apps/providers/property-mappings/index.md
* edits
* more edits
* Update website/docs/add-secure-apps/providers/property-mappings/index.md
---------
Signed-off-by: Tana M Berry <tanamarieberry@yahoo.com >
Co-authored-by: Tana M Berry <tanamarieberry@yahoo.com >
Co-authored-by: Dominic R <dominic@sdko.org >
2025-11-05 06:58:29 -06:00
authentik-automation[bot]
b1d571a5af
tasks/schedules: fix rel obj not being associated or updated (cherry-pick #17934 to version-2025.10) ( #17936 )
...
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
fix rel obj not being associated or updated (#17934 )
2025-11-04 15:45:01 +01:00
authentik-automation[bot]
fb589592b5
brands: sort matched brand by match length (cherry-pick #17920 to version-2025.10) ( #17935 )
...
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
2025-11-04 14:41:42 +01:00
authentik-automation[bot]
6468bb5707
brands: add more matching tests (cherry-pick #16185 to version-2025.10) ( #17924 )
...
brands: add more matching tests (#16185 )
* brands: reproduce matching error
* try some things
* fix tests
* fix tests
* Update authentik/brands/tests.py
* fix tests again?
* wip
---------
Signed-off-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-03 21:29:33 +00:00
authentik-automation[bot]
70406664dc
release: 2025.10.1
version/2025.10.1
2025-11-03 16:42:08 +00:00
authentik-automation[bot]
c58c194180
website/docs: 2025.10.1 release notes (cherry-pick #17918 to version-2025.10) ( #17919 )
...
website/docs: 2025.10.1 release notes (#17918 )
* website/docs: 2025.10.1 release notes
* Apply suggestions from code review
* format
---------
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Signed-off-by: Jens L. <jens@beryju.org >
Co-authored-by: Jens L. <jens@goauthentik.io >
Co-authored-by: Tana M Berry <tanamarieberry@yahoo.com >
2025-11-03 17:05:18 +01:00
authentik-automation[bot]
fad87741e7
providers/oauth2: fix kid always required for federation (cherry-pick #17914 to version-2025.10) ( #17917 )
...
providers/oauth2: fix kid always required for federation (#17914 )
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-03 16:26:31 +01:00
authentik-automation[bot]
f6679895e5
providers/radius: revert fix inverted message authenticator validation ( #17855 ) (cherry-pick #17915 to version-2025.10) ( #17916 )
...
providers/radius: revert fix inverted message authenticator validation (#17855 ) (#17915 )
Revert "providers/radius: fix inverted message authenticator validation (#17855 )"
This reverts commit 09e3301c8f .
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-03 16:26:17 +01:00
authentik-automation[bot]
a573a72ecb
providers/radius: fix inverted message authenticator validation (cherry-pick #17855 to version-2025.10) ( #17888 )
...
providers/radius: fix inverted message authenticator validation (#17855 )
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-11-01 18:28:06 +01:00
authentik-automation[bot]
b72709ebbc
web/a11y: User library -- fix issues surrounding element focus, ARIA labeling. (cherry-pick #17522 to version-2025.10) ( #17828 )
...
web/a11y: User library -- fix issues surrounding element focus, ARIA labeling. (#17522 )
* web/a11y: Fix issues surrounding element focus, aria labeling.
* web: Fix focus
* web: Fix nested focus
* web: Fix menu visibility when anchor positioning is not supported.
* web: Fix icon fallback behavior, labels.
* web: Fix flickering, descriptions.
* web: Fix excess width on mobile.
* web: Fix rendering artifacts on mobile.
* web: Remove aria-controls behavior.
- This is buggy, similar to aria-owns, and may cause crashes.
* web: Fix tabpanel focus attempting to scroll page.
* web: Fix issues surrounding consistent tab panel parameter testing.
* web: add shared helpers.
* web: Tidy comments.
Co-authored-by: Teffen Ellis <592134+GirlBossRush@users.noreply.github.com >
2025-11-01 17:05:19 +01:00
authentik-automation[bot]
449742fbc0
web: Consistent Tab Panel URL Parameters (cherry-pick #17804 to version-2025.10) ( #17859 )
...
web: Consistent Tab Panel URL Parameters (#17804 )
* web: Fix tabpanel focus attempting to scroll page.
* web: Fix issues surrounding consistent tab panel parameter testing.
* web: add shared helpers.
* web: Tidy comments.
Co-authored-by: Teffen Ellis <592134+GirlBossRush@users.noreply.github.com >
2025-11-01 17:04:43 +01:00
authentik-automation[bot]
1b02cc0dae
internal: full openssl path (cherry-pick #17856 to version-2025.10) ( #17860 )
2025-10-31 15:40:51 +01:00
authentik-automation[bot]
b0945ee7e9
outpost: revert breaking signals change (cherry-pick #17847 to version-2025.10) ( #17848 )
...
outpost: revert breaking signals change (#17847 )
I have no idea why this breaks tests
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-10-31 02:20:17 +01:00
authentik-automation[bot]
6682136af1
outposts: update permissions more eagerly (cherry-pick #17783 to version-2025.10) ( #17841 )
...
outposts: update permissions more eagerly (#17783 )
* wip
* wip
* a
* a
* rm
* this
* rm test files
* cover one more case
---------
Signed-off-by: Dominic R <dominic@sdko.org >
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Dominic R <dominic@sdko.org >
Co-authored-by: Jens Langhammer <jens@goauthentik.io >
2025-10-31 00:33:54 +01:00
authentik-automation[bot]
24cb5ae4c1
tasks: sanitize log attributes (cherry-pick #17833 to version-2025.10) ( #17842 )
...
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
2025-10-30 19:03:13 +01:00
authentik-automation[bot]
9e272c7121
core: bump astral-sh/uv from 0.9.5 to 0.9.6 (cherry-pick #17820 to version-2025.10) ( #17835 )
...
core: bump astral-sh/uv from 0.9.5 to 0.9.6 (#17820 )
Bumps [astral-sh/uv](https://github.com/astral-sh/uv ) from 0.9.5 to 0.9.6.
- [Release notes](https://github.com/astral-sh/uv/releases )
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md )
- [Commits](https://github.com/astral-sh/uv/compare/0.9.5...0.9.6 )
---
updated-dependencies:
- dependency-name: astral-sh/uv
dependency-version: 0.9.6
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-30 18:05:56 +01:00
authentik-automation[bot]
5dc7b7cdae
web/admin: fix scim provider form (cherry-pick #17831 to version-2025.10) ( #17834 )
...
web/admin: fix scim provider form (#17831 )
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-10-30 17:52:38 +01:00
authentik-automation[bot]
2e2c52e49c
internal/web/proxy: fix return status code during startup (cherry-pick #17827 to version-2025.10) ( #17832 )
...
internal/web/proxy: fix return status code during startup (#17827 )
Co-authored-by: Marc 'risson' Schmitt <marc.schmitt@risson.space >
2025-10-30 17:37:03 +01:00
Jens L.
38f1ef0506
ci: rework internal repo ( #17797 ) ( #17829 )
...
* ci: rework internal repo
* also fix retention workflow
---------
Signed-off-by: Jens Langhammer <jens@goauthentik.io >
2025-10-30 17:32:03 +01:00
authentik-automation[bot]
3517562549
internal: fix go deprecation for +build (cherry-pick #17806 to version-2025.10) ( #17824 )
...
internal: fix go deprecation for +build (#17806 )
Co-authored-by: Dominic R <dominic@sdko.org >
2025-10-30 15:48:50 +01:00
authentik-automation[bot]
cdbe40143d
root: use hashes for dockerfile FROM (cherry-pick #17795 to version-2025.10) ( #17798 )
...
* Cherry-pick #17795 to version-2025.10 (with conflicts)
This cherry-pick has conflicts that need manual resolution.
Original PR: #17795
Original commit: 6f35c32190
* fix conflict
Signed-off-by: Jens L. <jens@goauthentik.io >
---------
Signed-off-by: Jens L. <jens@goauthentik.io >
Co-authored-by: Jens L. <jens@goauthentik.io >
2025-10-29 14:01:28 +01:00