Yeah, moving from the baroque/enterprise clickable authentik/keycloak to "it's mostly CLI and purposefully few options" can cause some whiplash 😅
@viq what do you mean by
And bounced right off of all the options.
?
I'm interested in simple identity management/SSO for my self-hosted server so very curious about the limitations of each option.
@viq thanks for the info.
Really all I want is something to put in front of my home server for myself and my husband (nextcloud, a password manager, wallabag, jellyfin) and a virtual table top (FoudryVTT) for my TTRPG group (about 6 people).
Right now I'm using OAuth2Proxy backed by Google accounts, which works ok but is very not flexible:
I really like the authentication at the proxy level personally because I can block all traffic to (some) apps if you are not authenticated but the rest feels incomplete and inconsistent.
And I would like something that allows MFA with TOTP/Yubikey for some people/apps.
@viq thank you, this is very helpful information.
I expect I'll want to play with the larger systems at some point but I'd like to find something smaller for the foreseeable future.