this post was submitted on 19 Jan 2024
8 points (100.0% liked)

homelab

6460 readers
2 users here now

founded 4 years ago
MODERATORS
 

Hello all!

So I am setting up a internal domain that consist of active directory and rhel IDM. I would like to have some way of connecting the the internal network with a VPN that supports SSO. I have been looking around for a good solution but could not find one that would work nicely. I Looked at Wireguard at first but it doesnt seem to support user authentication. Then i found pritunl which at first glance seems great and is foss. only to be disappointment that for SSO you require a enterprise subscription of 70$/month. No thanks I am a home user.

I Know about OpenVPN and it works well when i used it (not in this setup yet) but is rather slow and I was looking if a better alternative exist.

Any ideas or suggestions would be appreciated.

top 5 comments
sorted by: hot top controversial new old
[–] [email protected] 3 points 8 months ago
[–] [email protected] 3 points 8 months ago (1 children)

I havent looked deeply into it, but I know that Tailscale has SSO. Maybe this also applies when selfhosting the lighthouse with Headscale?

[–] [email protected] 2 points 8 months ago (1 children)

Headscale

I loked a bit in to tailscale and Heacscale. If i got this straight Headscale is the self hostable version of the serverside?

[–] [email protected] 3 points 8 months ago

Yes. It works great, including sso.

[–] [email protected] 1 points 7 months ago

SoftEtherVPN supports Radius authentication. There is also Defguard which supports OIDC.