I've tried this multiple times including using the example solution (updated with the client_id, etc.) Unfortunately at Step 5 I get the following error:
An unhandled exception occurred while processing the request. OpenIdConnectProtocolException: Message contains error: 'invalid_request', error_description: 'invalid_scope', error_uri: 'error_uri is null'. Unknown location
Exception: An error was encountered while handling the remote login. Microsoft.AspNetCore.Authentication.RemoteAuthenticationHandler<TOptions>.HandleRequestAsync()