I’ve got 2 hosts. A slightly more powerful sff tower running my media stuff and arr services. VPN gateway that the arr’s route through etc. I have a raspberry pi that’s running my Adblocker, reverse proxy, Wireguard some stuff for a small business I run… So a website platform and invoice/time logging system.
Anyway these various services are mostly secured by password. Only the website is accessible externally. Any other service is only accessible internally or via Wireguard VPN.
Just at that stage asking myself “where do I draw the line?”
Would be nice to centrally manage logins but I suspect the mismash of services I run wont all support SSO.
I think In today it must be near 25-30 services / containers.
Authentik looks good. But wondering whether it’s just going to be something I only use a fraction of and “a bit overkill” for my needs?
Based on your setup, you might find ZITADEL (https://zitadel.com/docs/self-hosting/deploy/overview) a great fit for centralized login management. It’s versatile enough to handle a variety of services and containers, making it ideal even for mixed environments like yours. It’ll also be worth watching this video for a demo on how to set up SSO - https://www.youtube.com/watch?v=1T1uxKW06Vs