mirror of
https://github.com/actualbudget/actual.git
synced 2026-03-10 20:23:07 -05:00
[Bug]: Authelia OIDC config - request timed out #1758
Closed
opened 2026-02-28 19:53:58 -06:00 by GiteaMirror
·
3 comments
No Branch/Tag Specified
master
matiss/oxlint-no-floating-promises-require-array-sort-compare
ai/custom-theme-dual-prefs
claude/fix-simplefin-batch-sync-O8LcD
matiss/fix-6804
claude/fix-simplefin-ssrf-T31gX
claude/release-notes-validation-X7rvR
add-claude-github-actions-1772738270730
react-query-rules
react-query-useSchedules
matiss/separate-lint-format
dependabot/npm_and_yarn/ajv-6.14.0
cursor/sync-performance-notification-9899
react-query-prefs
matiss/chunked-sync-and-progress-ux
v26.2.1
copilot/sub-pr-6880
fix-react-query-clear-on-close-budget
copilot/sub-pr-6140
feat/auto-note
feat/scoped-bank-sync
cursor/desktop-transactions-react-table-1d0c
fix-exhaustive-deps-App
copilot/fix-find-replace-bug
release/v26.2.0-pre
matiss/browser-tests
mobile-fix-drag-and-drop-across-groups
budget-table-v2
PayeeAutocomplete2
pglite
bugfix/plugins/fix-plugins-sw
feat/plugins/plugins-core-package
prerelease
matiss/unicode-minus-fix
cursor/fix-actual-github-issue-6206-gemini-3-pro-preview-9c37
TransactionFormPage
cursor/implement-mortgage-and-loan-account-type-78ca
tests-update-fill-with-pressSequentially
mobile/link-modal
deps/25.11
cursor/fix-update-vrt-apply-ci-job-dispatch-b324
sync-server-plugins
cursor/propose-patch-for-github-issue-5680-2a18
fix/compiler-preserve-inner-dollar-escapes
cursor/analyze-actual-budget-issue-and-propose-fix-5b70
coderabbitai/docstrings/0c070e5
cursor/add-wip-prefix-and-comment-to-prs-d78d
jfdoming/08-21-auto-focus-on-navigate-in-all-browsers
show-totals-on-mobile-budget-banners
allow-child-transactions-make-transfer
mobile-calculator-keyboard
payee-geolocation
enhance/restore_scroll_position
dm-fix-second-click-on-mobile-new-transaction-2
scrollToLocationBudget
alert-autofix-38
tsconfig-composite
mobile-fix-uncategorized-transactions-on-tracking-budgets
server-budget-handlers
fix-sql-injection-in-cleanup-template
non-chrome-draggable-workaround
mobile-budget-page-swipe-navigation
ts-db-all
stable
dark-theme-with-brand-colors
fix-mobile-delete-group
ts-db-select
UnderKoen/reconcile-context-menu
master-before-server-merge
v25.2.1
ts-runQuery
rename-redux-hooks
UnderKoen/3557-persist-state-in-history
remove-redux-CLOSE_BUDGET
fix-exhaustive-deps-errors-FinancesApp
redux-toolkit-createSlice-backup
accounts-function-component
ts-useSplitsExpanded
loot-core-server-package
useTransactios-in-TransactionEdit
react-aria-input
move-redux-to-desktop-client
QueryState-type
fix-themes-applied-late
mobile-vrts
revert-3295-spendingCardFix
react-aria-button-4
split-payee-on-mobile
twk3/pin-apis-crdt
notes-tag-autocomplete
ts-LoadBackup
dnd-kit
package-upgrades
v26.3.0
v26.2.1
v26.2.0
v26.1.0
v25.12.0
v25.11.0
v25.10.0
v25.9.0
v25.8.0
v25.7.1
v25.7.0
v25.6.1
v25.6.0
v25.5.0
v25.4.0
v25.3.1
v25.3.0
v25.2.1
v25.2.0
v25.1.0
v24.12.0
v24.11.0
v24.10.1
v24.10.0
v24.9.0
v24.8.0
v24.7.0
v24.6.0
v24.5.0
v24.4.0
v24.3.0
v24.2.0
v24.1.0
v23.12.0
v23.11.0
v23.10.0
v23.9.0
v23.8.1
v23.8.0
v23.7.2
v23.7.1
v23.7.0
v23.6.0
v23.5.0
v23.4.2
v23.4.1
v23.4.0
v23.3.2
v23.3.0
v23.2.9
v23.2.5
v23.1.12
v22.12.9
Labels
Clear labels
AI generated
API
bank sync
budgeting
bug
can’t replicate
dependencies
docker
documentation
electron
experimental feature
feature
feedback
goal templates
good first issue
help wanted
importers
maintenance
needs info
needs testing
needs triage
needs votes
openid
payees
pull-request
regression
reports
responsive
rules
schedules
server
✨ merged
split transactions
tech debt
theme
transaction import
transaction reconciliation
transactions
translations
upstream
user interface
✅ approved
wontfix
Mirrored from GitHub Pull Request
No Label
bug
Milestone
No items
No Milestone
Projects
Clear projects
No project
No Assignees
Notifications
Due Date
No due date set.
Dependencies
No dependencies set.
Reference: github-starred/actual#1758
Reference in New Issue
Block a user
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @fredmorais on GitHub (Jan 9, 2025).
Verified issue does not already exist?
What happened?
I was trying the new OpenID feature with authelia but when I enable the feature I get an error in the UI. When checking the container's logs I see the following error:
Error setting up OpenID client: RPError: outgoing request timed out after 3500ms at /app/node_modules/openid-client/lib/helpers/request.js:140:13 at async Issuer.discover (/app/node_modules/openid-client/lib/issuer.js:143:22) at async setupOpenIdClient (file:///app/src/accounts/openid.js:53:9) at async bootstrapOpenId (file:///app/src/accounts/openid.js:26:5) at async enableOpenID (file:///app/src/account-db.js:132:20) at async file:///app/src/app-openid.js:30:20How can we reproduce the issue?
Actual Budget OpenID config:

Authelia config:
- id: actual_budget description: actual_budget secret: MY_SECRET public: false authorization_policy: one_factor audience: [] scopes: - openid - groups - email - profile redirect_uris: - https://budget.MY_DOMAIN.COM/openid/callback userinfo_signed_response_alg: none token_endpoint_auth_method: client_secret_basicFor the redirect_uris I also tried just https://budget.MY_DOMAIN.COM and it doesn't work. I considered it might be a network error but I have another container (not Actual) on the same network who is able to connect to authelia.MY_DOMAIN.COM just fine.
Where are you hosting Actual?
Docker
What browsers are you seeing the problem on?
Firefox
Operating System
Linux
@driniM3 commented on GitHub (Feb 23, 2025):
I am also seeing this bug using Authentik. I seem to be able to set up the openID connection after multiple tries but then cannot log in consistently.
OpenID grant failed: RPError: outgoing request timed out after 3500ms at /app/node_modules/openid-client/lib/helpers/request.js:140:13 at async /app/node_modules/openid-client/lib/helpers/issuer.js:35:26 at async Issuer.queryKeyStore (/app/node_modules/openid-client/lib/helpers/issuer.js:84:20) at async Client.validateJWT (/app/node_modules/openid-client/lib/client.js:1062:14) at async Client.validateIdToken (/app/node_modules/openid-client/lib/client.js:766:49) at async Client.callback (/app/node_modules/openid-client/lib/client.js:505:7) at async loginWithOpenIdFinalize (file:///app/src/accounts/openid.js:177:18) at async file:///app/src/app-openid.js:86:24If i spam the login button a bunch of times, sometimes it seems to make it through. Maybe increase the timeout to 30 seconds as that's what other apps seem to have it set to.
@SteinTokvam commented on GitHub (Apr 23, 2025):
I use Authelia sucessfully. In versions before 25.4.0 I had a config.json
See Authelia docs.
But in version 25.4.0 that config file broke for me, so I set the environment variables instead of using the config.json file which are:
ACTUAL_OPENID_DISCOVERY_URL for authelia url
ACTUAL_OPENID_CLIENT_ID for client id
ACTUAL_OPENID_CLIENT_SECRET for client secret
ACTUAL_OPENID_SERVER_HOSTNAME for your actual budget url
ACTUAL_OPENID_AUTH_METHOD set to oauth2
edit:
in actual version 25.4.0 the "issuer" field in config.json has changed to "discoveryURL"
@youngcw commented on GitHub (Jun 4, 2025):
Closing this as its old and there have been a number of updates to openID. If the issues persists please open a new ticket.