Levelrail
Skip to content

Self-host authentik with Docker ​

An identity provider and SSO platform with flows, policies, and support for OIDC, SAML, LDAP, and proxy auth.

This page describes the Levelrail template for authentik (Security). It deploys the services below as one Docker Compose app on your own server.

Project site: https://docs.goauthentik.io.

Recommended memory: about 2048 MiB.

Services, ports and volumes ​

ServiceImageContainer portsVolumes
authentikghcr.io/goauthentik/server:2026.8.39000
authentik_media -> /media
dbpostgres:16-alpinenone
authentik_db_data -> /var/lib/postgresql/data
workerghcr.io/goauthentik/server:2026.8.3none
authentik_media -> /media

Environment variables ​

ServiceVariableValue
authentikAUTHENTIK_BOOTSTRAP_EMAILPreset in the template
authentikAUTHENTIK_BOOTSTRAP_PASSWORDGenerated at deploy
authentikAUTHENTIK_POSTGRESQL__HOSTPreset in the template
authentikAUTHENTIK_POSTGRESQL__NAMEPreset in the template
authentikAUTHENTIK_POSTGRESQL__PASSWORDGenerated at deploy
authentikAUTHENTIK_POSTGRESQL__USERPreset in the template
authentikAUTHENTIK_SECRET_KEYGenerated at deploy
dbPOSTGRES_DBPreset in the template
dbPOSTGRES_PASSWORDGenerated at deploy
dbPOSTGRES_USERPreset in the template
workerAUTHENTIK_POSTGRESQL__HOSTPreset in the template
workerAUTHENTIK_POSTGRESQL__NAMEPreset in the template
workerAUTHENTIK_POSTGRESQL__PASSWORDGenerated at deploy
workerAUTHENTIK_POSTGRESQL__USERPreset in the template
workerAUTHENTIK_SECRET_KEYGenerated at deploy

Passwords and keys marked as generated are created for you when the app is deployed and stored as secrets. Values are not shown here.

Deploy authentik with Levelrail ​

In the dashboard, open Apps, choose New app, then Browse templates, and select authentik. Review the Compose body and deploy.

With the CLI:

levelrail-cli templates deploy authentik --name my-authentik

See Service template catalog for how templates work, and Getting started if you have not installed Levelrail yet.

More Security templates ​

All templates are listed in the self-host gallery.

Released under the Apache 2.0 License.