Skip Navigation
Modern alternatives to FreeIPA
  • The only alternative I know of that goes close to what FreeIPA does (minus the cert part) is kanidm. It does:

    • oauth2
    • ssh key distribution
    • RADIUS
    • PAM/SSSD
    • LDAP

    I just noticed they have a beta for multimaster replication, which is nice.

    I use it at home. Note, though, that it does not do any hand-holding, and all configuration is done through CLI. Also note, there are docs for the stable or dev branch and there sometimes are big differences between the two.

  • Simple authentication for homelab?
  • I use kanidm with oauth2-proxy. No issues so far, it was pretty easy to set up.

    Note that the connection to kanidm needs to be TLS even if you have a reverse proxy!

    EDIT: currently using 80MB RAM for two users and three Service Providers.

  • Introducing Onno VK6FLAB
  • Hey there! I’m also a fellow Reddit expat, deleted my logins in the day the API limits went into effect. I’m also coming from a long pause in activity, I’m planning to try some SOTA once the weather gets a bit warmer. I’m the proud owner of a IC-706mk2G with a couple of blown caps (I really hope the FETs are okay) and a bunch of handhelds. 73 de IV3BSI

  • Migrating away from Gandi, 9 months later
  • I also moved away my domains and the ones of the hackerspace I manage, mainly to:

    • infomaniak (Switzerland): a bit too pushy with extra services, but not bad
    • openprovider (NL): more geared towards bulk users, have to prepay (min 20€), but okay so far
    • aruba: meh, but free mailboxes are nice

    I also use Migadu, they have been great so far!

    desec.io for DNS, also great and supported by Traefik for DNS-01 ACME challenge.

  • Transferring my domain from Google
  • It’s a bit chaotic, and they try to force you to pay for other stuff in the process, but the prices were not that far off from other registrars. Note that I use DeSEC for the actual nameservers though.

  • What are you guys up to these days?
  • My UPS just died :( so I’m trying to repair it. It start beeping like it’s overloaded even with no load attached. I’m suspecting an issue around the current transformer ADC.

    Apart from that, I have a TuringPi 2 loaded with SOQuartz boards to start up, I was thinking of trying kubernetes (k0s) to have some resilience for the base infra (dns resolver, dns root zone for the home domain, metrics) but I need a couple of days to start…

  • DM/GM, cosa usate per generare le mappe dei vostri giochi?

    Sono alla ricerca di un software per gestire mappe, token, etc… possibilmente open source, installabile, oppure una applicazione locale.

    Grazie!

    0
    Gandi announced a price increase and discontinuation of free mailboxes

    It looks like it’s time to “shop around”. What registrar are you guys using?

    9
    Ho finito la mia prima Stagione di Broken Compass

    Mi sto preparando ad iniziare un'altra, AMA!

    Broken Compass è molto carino devo dire, poca preparazione per il master (yay!) e libero all'improvvisazione, ma con la giusta dose di alea per mantenere le cose interessanti. Qualcun altro ha provato a giocarci? Che ne pensate?

    0
    InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)G5
    g5pw @feddit.it
    Posts 3
    Comments 31