I’ve got 2 hosts. A slightly more powerful sff tower running my media stuff and arr services. VPN gateway that the arr’s route through etc. I have a raspberry pi that’s running my Adblocker, reverse proxy, Wireguard some stuff for a small business I run… So a website platform and invoice/time logging system.
Anyway these various services are mostly secured by password. Only the website is accessible externally. Any other service is only accessible internally or via Wireguard VPN.
Just at that stage asking myself “where do I draw the line?”
Would be nice to centrally manage logins but I suspect the mismash of services I run wont all support SSO.
I think In today it must be near 25-30 services / containers.
Authentik looks good. But wondering whether it’s just going to be something I only use a fraction of and “a bit overkill” for my needs?
I do run Authentik and even for applications I don’t expose to the internet, for the sole reason of multiple accounts. I have friends who use my server so it’s not just a single user environment. Thus, complete control of authentication is a must for me. Might be worth considering if this might apply to you too!