Integrate with RustDesk Server Pro
Support level: Community
What is RustDesk Server Pro?
RustDesk Server Pro is a premium self-hosted solution for managing remote desktop connections securely and efficiently. It offers enhanced performance, advanced security features, and customization options like branding to meet professional needs. Ideal for businesses, it provides full control over data while ensuring scalable and reliable remote access.
This guide explains how to configure Rustdesk Server Pro to use authentik as the OAuth provider for logging in to the Web GUI.
Preparation
This guide uses the following placeholders:
rustdesk.company
is the FQDN of the RustDesk Server Pro installation.authentik.company
is the FQDN of the authentik installation.
This documentation lists only the settings that you need to change from their default values. Be aware that any changes other than those explicitly mentioned in this guide could cause issues accessing your application.
authentik configuration
To support the integration of Rustdesk Server Pro with authentik, you need to create an application/provider pair in authentik.
Create an application and provider in authentik
- Log in to authentik as an admin, and open the authentik Admin interface.
- Navigate to Applications > Applications and click Create with Provider to create an application and provider pair. (Alternatively you can first create a provider separately, then create the application and connect it with the provider.)
- Application: provide a descriptive name, an optional group for the type of application, the policy engine mode, and optional UI settings.
- Choose a Provider type: select OAuth2/OpenID Connect as the provider type.
- Configure the Provider: provide a name (or accept the auto-provided name), the authorization flow to use for this provider, and the following required configurations.
- Note the Client ID,Client Secret, and slug values because they will be required later.
- Set a
Strict
redirect URI to https://rustdesk.company/api/oidc/callback. - Select any available signing key.
- Configure Bindings (optional): you can create a binding (policy, group, or user) to manage the listing and access to applications on a user's My applications page.
- Click Submit to save the new application and provider.
RustDesk Server Pro configuration
- Sign in to RustDesk Server Pro using a browser.
- In the left menu, select Settings and then OIDC.
- Click + New Auth Provider.
- In the popup window, select custom as the Auth Type and click OK.
- Configure the following values using information from the authentik provider:
- Set Name to
authentik
- Set Client ID to the Client ID copied from authentik.
- Set Client secret to the Client Secret copied from authentik.
- Set Issuer to https://authentik.company/application/o/slug/
- Set Authorization Endpoint to https://authentik.company/application/o/authorize/
- Set Token Endpoint to https://authentik.company/application/o/token/
- Set Userinfo Endpoint to https://authentik.company/application/o/userinfo/
- Set JWKS Endpoint to https://authentik.company/application/o/slug/jwks/
- Set Name to
Users are created automatically on login. Permissions must be assigned by an administrator after user creation.
Test the Login
- Open a browser and navigate to https://rustdesk.company.
- Click Continue with authentik.
- You should be redirected to authentik (with the login flows you configured). After logging in, authentik will redirect you back to https://rustdesk.company.
- If you are redirected back to https://rustdesk.company and can read the username in the top right corner, the setup was successful.