• 1 Post
  • 36 Comments
Joined 1 year ago
cake
Cake day: June 10th, 2023

help-circle
  • The only alternative I know of that goes close to what FreeIPA does (minus the cert part) is kanidm. It does:

    • oauth2
    • ssh key distribution
    • RADIUS
    • PAM/SSSD
    • LDAP

    I just noticed they have a beta for multimaster replication, which is nice.

    I use it at home. Note, though, that it does not do any hand-holding, and all configuration is done through CLI. Also note, there are docs for the stable or dev branch and there sometimes are big differences between the two.







  • I also moved away my domains and the ones of the hackerspace I manage, mainly to:

    • infomaniak (Switzerland): a bit too pushy with extra services, but not bad
    • openprovider (NL): more geared towards bulk users, have to prepay (min 20€), but okay so far
    • aruba: meh, but free mailboxes are nice

    I also use Migadu, they have been great so far!

    desec.io for DNS, also great and supported by Traefik for DNS-01 ACME challenge.









  • My UPS just died :( so I’m trying to repair it. It start beeping like it’s overloaded even with no load attached. I’m suspecting an issue around the current transformer ADC.

    Apart from that, I have a TuringPi 2 loaded with SOQuartz boards to start up, I was thinking of trying kubernetes (k0s) to have some resilience for the base infra (dns resolver, dns root zone for the home domain, metrics) but I need a couple of days to start…