[-] g5pw@feddit.it 11 points 2 months ago

The only alternative I know of that goes close to what FreeIPA does (minus the cert part) is kanidm. It does:

  • oauth2
  • ssh key distribution
  • RADIUS
  • PAM/SSSD
  • LDAP

I just noticed they have a beta for multimaster replication, which is nice.

I use it at home. Note, though, that it does not do any hand-holding, and all configuration is done through CLI. Also note, there are docs for the stable or dev branch and there sometimes are big differences between the two.

[-] g5pw@feddit.it 15 points 3 months ago* (last edited 3 months ago)

I use kanidm with oauth2-proxy. No issues so far, it was pretty easy to set up.

Note that the connection to kanidm needs to be TLS even if you have a reverse proxy!

EDIT: currently using 80MB RAM for two users and three Service Providers.

[-] g5pw@feddit.it 6 points 5 months ago

I think you can create a group for friends and a group for family. If you want more separation I think Authentik handles multi-tenancy as well

[-] g5pw@feddit.it 10 points 6 months ago

Saving this for all my future pro-systemd flames, thank you!

[-] g5pw@feddit.it 5 points 6 months ago

I’m using sops with my GPG key currently.

[-] g5pw@feddit.it 9 points 8 months ago

Molise, Italy, which is a whole region that doesn’t exists!

[-] g5pw@feddit.it 3 points 10 months ago

I’m also leaving, migrates to infomaniak as a registrar, DeSec as DNS provider and Migadu for email… no regrets!

[-] g5pw@feddit.it 5 points 10 months ago

Sure, but it’s a question of principle. I try to use and support FLOSS software if possible.

[-] g5pw@feddit.it 9 points 10 months ago

Aw man… and I was just thinking about deploying Nomad in my homelab…

[-] g5pw@feddit.it 3 points 10 months ago

I found the definition of Coordi-Nations interesting. It could also be applied to hackerspaces/hackbases. I need to look into that

[-] g5pw@feddit.it 5 points 11 months ago

Perhaps you could find some info in the translation project wiki page?

[-] g5pw@feddit.it 44 points 1 year ago

Exactly this. In a federated network, the instance with the majority of users could dictate the protocol, forcing the smaller issues to continually adapt or die. See this post for a very real example of this.

6
submitted 1 year ago by g5pw@feddit.it to c/selfhosted@lemmy.world

It looks like it’s time to “shop around”. What registrar are you guys using?

view more: next ›

g5pw

joined 1 year ago