--- apiVersion: v1 kind: ConfigMap metadata: name: authentik-blueprints-n8n namespace: authentik labels: goauthentik.io/blueprint: "true" data: n8n.yaml: |- version: 1 metadata: name: n8n-oidc entries: - model: authentik_providers_oauth2.oauth2provider id: n8n-provider state: present identifiers: name: n8n attrs: name: n8n client_id: e55cbe3c6d2ae30c05c86385802ffcfd76a972c22c8d039f000281d4a149fd44 client_secret: 718d4c4816aa68767a6a0da0fa4099d492473c700ba236cbeb64d294762b9548acda7e716ba11b2ad7729d6a1c16c7890b227e3b2dcfc35fd4af1eb0d6662b0f authorization_flow: !Find [authentik_flows.flow, [slug, default-provider-authorization-implicit-consent]] authentication_flow: !Find [authentik_flows.flow, [slug, default-authentication-flow]] invalidation_flow: !Find [authentik_flows.flow, [slug, default-provider-invalidation-flow]] redirect_uris: - url: "https://n8n.kube.huskypup.net/callback" matching_mode: strict property_mappings: - !Find [authentik_providers_oauth2.scopemapping, [scope_name, openid]] - !Find [authentik_providers_oauth2.scopemapping, [scope_name, email]] - !Find [authentik_providers_oauth2.scopemapping, [scope_name, profile]] client_type: confidential access_code_validity: "minutes=10" access_token_validity: "hours=1" refresh_token_validity: "days=30" signing_key: !Find [authentik_crypto.certificatekeypair, [name, "authentik Self-signed Certificate"]] - model: authentik_core.application id: n8n-application state: present identifiers: slug: n8n attrs: name: n8n slug: n8n policy_engine_mode: any provider: !KeyOf n8n-provider