Authelia: open it, first login, settings, fixes
· Updated 18 September 2026 · SparkBox team
Single sign-on and two-factor authentication portal. Add a login + TOTP gate in front of any SparkBox service via Nginx Proxy Manager's forward-auth — useful for exposing dashboards beyond your LAN. This is the short card for it — the two minutes after you press Enable, and the page to come back to when something is off.
Open it
Dashboard → Apps → Authelia → Open. The direct address on your network is:
http://<your-box-IP>:9091Visit to set up TOTP for the admin account. Authelia only protects services you wire up to use it via NPM forward-auth — by itself it doesn't gate anything. See docs → Authelia setup.
When it breaks
If it will not open, check the app card first — a red dot means it is restarting or unhealthy, and this walkthrough reads the reason from its log. Tom AI on the dashboard can do the same for you.
Where your data lives
/opt/sparkbox/modules/authelia/config/Included in the dashboard's Backup by default. Restoring that backup on a fresh install brings Authelia back exactly as it was.
Questions, or did this not match your box?
Every guide here came from a real problem someone hit. If yours behaves differently, say so — that is how these get corrected, and how the fix gets prioritised.
We answer there rather than in a comment box, because that is where the people who have already solved it are.