

For webapp stuff for sure, but when you want to login as the same user with the same perms across all your VMS and baremetal servers at the os, it’s nice.
I use virtualization over containerization because i have the hardware resource so I might as well take advantage of improved isolation and security VMS provide. Plus I use Linux on my desktop/laptop, and have a separate dedicated storage host.
Its nice to have everything managed by one service with global accounts and permissions.
Looking at authentik it seems to provide some but not all of that. Def something to keep an eye on if freeipa decides to stop being so free.
If you’re running a docker-based environment, and especially if your personal workstation/laptop doesn’t run Linux, I totally get it.
I think freeIPA could use an openid provider packed in for sure. I also kinda trust api keys more than creating the service accounts for software that needs to auth.
Outta curiosity how do you handle SSO and File Storage? I like being able to make samba shares that require SSO authentication over something like nextcloud because I can directly mount the disk. Not sure if theres a good option there.




If you can’t open chrome on a pc, connect an android phone to it, and use a simple web tool you’re probably not capable of any actual level of digital privacy.
This isn’t me being elitist its just the fact that the resources needed to make this shit viable and easy are being tied up to corporations in order to make more easy-to-use corporate spyware.
Privacy under fascism takes time, effort, and education. Stop fucking expecting it to be OOTB. Society is literally engineered against that. Its not a reasonable ask of open source devs making privacy tools.