So, I have a bunch of services behind Authelia, utilizing LDAP hosted on my NAS. I log in once and it carries through my other services that are secured by Authelia, which is great.

However, since my wife rarely visits these services - mostly when I send her links - she has to log in basically every time. I’ve contemplated putting our laptops on a network login backed by the same LDAP, though I haven’t started researching how to do that yet. If I do, though, is there a way to have the laptop login integrate with Authelia or another solution to prevent login prompts?

I know I could do it with Windows and AD, but we’re both on Linux, so that complicates things a bit.

@ninjan@lemmy.mildgrim.com
link
fedilink
English
5
edit-2
10M

You can do AD on Linux as well and have the account on her laptop be in active directory and passed along at login. I guess this can be done with other tech as well but I haven’t explored that.

You could also move to a password less approach, say only authenticator on the phone via push notification or if there’s some way to have the hardware ID be used as authentication in a password less scheme.

Edit:

A yubikey might do the trick? Then as long as that is in the laptop she won’t need to supply a password.

@StefanT@lemmy.world
link
fedilink
English
310M

You could have a look at Kerberos. That’s what Microsoft took as base for AD afaik.

@cooopsspace@infosec.pub
link
fedilink
English
210M

Authentik

Create a post

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don’t control.

Rules:

  1. Be civil: we’re here to support and learn from one another. Insults won’t be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it’s not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don’t duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

  • 1 user online
  • 126 users / day
  • 421 users / week
  • 1.16K users / month
  • 3.85K users / 6 months
  • 1 subscriber
  • 3.68K Posts
  • 74.2K Comments
  • Modlog