Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. App Wishlist
  3. Authentik - Making authentication simple.

Authentik - Making authentication simple.

Scheduled Pinned Locked Moved App Wishlist
17 Posts 8 Posters 5.1k Views 11 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • njN nj

    authentik is an open-source Identity Provider focused on flexibility and versatility. You can use authentik in an existing environment to add support for new protocols, implement sign-up/recovery/etc. in your application so you don't have to deal with it, and many other things.

    https://goauthentik.io/
    https://github.com/goauthentik/authentik
    https://goauthentik.io/docs/installation/docker-compose/

    andreasduerenA Offline
    andreasduerenA Offline
    andreasdueren
    wrote on last edited by
    #2

    @nj Yes, very nice!

    1 Reply Last reply
    0
    • njN nj

      authentik is an open-source Identity Provider focused on flexibility and versatility. You can use authentik in an existing environment to add support for new protocols, implement sign-up/recovery/etc. in your application so you don't have to deal with it, and many other things.

      https://goauthentik.io/
      https://github.com/goauthentik/authentik
      https://goauthentik.io/docs/installation/docker-compose/

      Sam_ukS Offline
      Sam_ukS Offline
      Sam_uk
      wrote on last edited by
      #3

      Seems like this might solve a bunch of problems for Cloudron admins. @nj Would you recommend @girish prioritizes this over the Keycloak?

      njN 1 Reply Last reply
      0
      • marcusquinnM Offline
        marcusquinnM Offline
        marcusquinn
        wrote on last edited by
        #4

        Was just looking into the exact same thing. 👍 from here.

        We might do this anyway, but it would also be good to have an enthusiastic audience from @girish and @nebulon for some of these more Enterprisey things please.

        We can blow the trumpet all day long as techies, but it's things like this that anyone with more than a dozen or so users really needs, and would be happy to pay more for too!

        Web Design https://www.evergreen.je
        Development https://brandlight.org
        Life https://marcusquinn.com

        1 Reply Last reply
        1
        • marcusquinnM Offline
          marcusquinnM Offline
          marcusquinn
          wrote on last edited by
          #5

          SMS 2FS setup seems pretty simple too:

          https://goauthentik.io/docs/flow/stages/authenticator_sms/

          It's kind of a PITA that Cloudron doesn't have SMS password resets and 2FA, would save me a lot of work in trying to setup new users that don't have email access yet.

          Web Design https://www.evergreen.je
          Development https://brandlight.org
          Life https://marcusquinn.com

          Sam_ukS 1 Reply Last reply
          1
          • Sam_ukS Sam_uk referenced this topic on
          • marcusquinnM marcusquinn

            SMS 2FS setup seems pretty simple too:

            https://goauthentik.io/docs/flow/stages/authenticator_sms/

            It's kind of a PITA that Cloudron doesn't have SMS password resets and 2FA, would save me a lot of work in trying to setup new users that don't have email access yet.

            Sam_ukS Offline
            Sam_ukS Offline
            Sam_uk
            wrote on last edited by Sam_uk
            #6

            I'm pretty interested in getting this packaged soonish.

            Could someone provide an estimate of how many hours work it would be, I can then see if I can find a budget for it?

            Is there anyone else who might you be able to contribute to the costs? @marcusquinn @atridad

            marcusquinnM 1 Reply Last reply
            2
            • Sam_ukS Sam_uk

              I'm pretty interested in getting this packaged soonish.

              Could someone provide an estimate of how many hours work it would be, I can then see if I can find a budget for it?

              Is there anyone else who might you be able to contribute to the costs? @marcusquinn @atridad

              marcusquinnM Offline
              marcusquinnM Offline
              marcusquinn
              wrote on last edited by
              #7

              @Sam_uk We'll try and work on this soon, but could sponsor if someone else wanted to?

              Web Design https://www.evergreen.je
              Development https://brandlight.org
              Life https://marcusquinn.com

              Sam_ukS 1 Reply Last reply
              2
              • marcusquinnM marcusquinn

                @Sam_uk We'll try and work on this soon, but could sponsor if someone else wanted to?

                Sam_ukS Offline
                Sam_ukS Offline
                Sam_uk
                wrote on last edited by
                #8

                @marcusquinn Great stuff, do you have a sense of how many hours of work we're looking at? Is it half a day or five days?

                timconsidineT 1 Reply Last reply
                1
                • Sam_ukS Sam_uk

                  Seems like this might solve a bunch of problems for Cloudron admins. @nj Would you recommend @girish prioritizes this over the Keycloak?

                  njN Offline
                  njN Offline
                  nj
                  wrote on last edited by nj
                  #9

                  @Sam_uk I still think Keycloak is more stable. If I had to choose between Authentik and Keycloak I'd pick Keycloak any day. Also, I have successfully packaged Keycloak. https://github.com/njsubedi/cloudron-keycloak

                  Founder / Coder • My Apps

                  potemkin_aiP timconsidineT 2 Replies Last reply
                  5
                  • njN nj

                    @Sam_uk I still think Keycloak is more stable. If I had to choose between Authentik and Keycloak I'd pick Keycloak any day. Also, I have successfully packaged Keycloak. https://github.com/njsubedi/cloudron-keycloak

                    potemkin_aiP Offline
                    potemkin_aiP Offline
                    potemkin_ai
                    wrote on last edited by
                    #10

                    @nj could you please, elaborate on your thoughts? Is it something coming from your experience?

                    1 Reply Last reply
                    1
                    • njN nj

                      @Sam_uk I still think Keycloak is more stable. If I had to choose between Authentik and Keycloak I'd pick Keycloak any day. Also, I have successfully packaged Keycloak. https://github.com/njsubedi/cloudron-keycloak

                      timconsidineT Offline
                      timconsidineT Offline
                      timconsidine
                      App Dev
                      wrote on last edited by
                      #11

                      @nj said in Authentik - Making authentication simple.:

                      If I had to choose between Authentik and Keycloak I'd pick Keycloak any day

                      I'd love to know more about why this opinion.
                      Keycloak sure looks an impressive beast.
                      But it seems to me almost "too impressive".
                      My brief review suggests to me that it is an Enterprise solution.
                      And it's only suitable for apps supporting OpenConnectID.
                      Great if they do, but that's a limited selection in reality.
                      Which is not what is needed "any day".

                      I'm not knocking Keycloak. Maybe I will come to love it.
                      For now I just want to put an authentication front-end in front of some simple utility apps which have no auth.

                      Seems that's not what Keycloak is about.

                      1 Reply Last reply
                      0
                      • Sam_ukS Sam_uk

                        @marcusquinn Great stuff, do you have a sense of how many hours of work we're looking at? Is it half a day or five days?

                        timconsidineT Offline
                        timconsidineT Offline
                        timconsidine
                        App Dev
                        wrote on last edited by
                        #12

                        @Sam_uk / @marcusquinn : did the packaging for authentik get anywhere ?

                        1 Reply Last reply
                        1
                        • njN nj

                          authentik is an open-source Identity Provider focused on flexibility and versatility. You can use authentik in an existing environment to add support for new protocols, implement sign-up/recovery/etc. in your application so you don't have to deal with it, and many other things.

                          https://goauthentik.io/
                          https://github.com/goauthentik/authentik
                          https://goauthentik.io/docs/installation/docker-compose/

                          timconsidineT Offline
                          timconsidineT Offline
                          timconsidine
                          App Dev
                          wrote on last edited by
                          #13

                          @nj slightly off-topic but any suggestions of a tutorial for implementing Authentik ?
                          The documentation is totally clear but lacking in 'how to'.
                          The only I found (https://xpufx.com/posts/protecting-your-first-app-with-authentik/) was helpful as regards authentik but basically said it's all down to network config and provided little guidance as to what network config.

                          fbartelsF 1 Reply Last reply
                          1
                          • timconsidineT timconsidine

                            @nj slightly off-topic but any suggestions of a tutorial for implementing Authentik ?
                            The documentation is totally clear but lacking in 'how to'.
                            The only I found (https://xpufx.com/posts/protecting-your-first-app-with-authentik/) was helpful as regards authentik but basically said it's all down to network config and provided little guidance as to what network config.

                            fbartelsF Offline
                            fbartelsF Offline
                            fbartels
                            App Dev
                            wrote on last edited by
                            #14

                            @timconsidine said in Authentik - Making authentication simple.:

                            slightly off-topic but any suggestions of a tutorial for implementing Authentik ?

                            The authentik documentation has example configurations for quite some applications: https://goauthentik.io/integrations/

                            I have only just started taking a dive into Authentik but for portability reasons I decided to deploy it on a machine independent from my Cloudron.

                            1 Reply Last reply
                            4
                            • C Offline
                              C Offline
                              ccfu
                              wrote on last edited by
                              #15

                              Has there been any further development with this? I am considering deploying Authentik on a non-Cloudron server but would wait if it is likely to be on Cloudron in the near future.

                              fbartelsF Sam_ukS 2 Replies Last reply
                              0
                              • C ccfu

                                Has there been any further development with this? I am considering deploying Authentik on a non-Cloudron server but would wait if it is likely to be on Cloudron in the near future.

                                fbartelsF Offline
                                fbartelsF Offline
                                fbartels
                                App Dev
                                wrote on last edited by
                                #16

                                @ccfu if you want to take advantage of Authentiks proxy mode, when I would recommend to install Authentik independently of Cloudron. You can still connect the two however by configuring Cloudron as an LDAP client of Authentik.

                                1 Reply Last reply
                                2
                                • C ccfu

                                  Has there been any further development with this? I am considering deploying Authentik on a non-Cloudron server but would wait if it is likely to be on Cloudron in the near future.

                                  Sam_ukS Offline
                                  Sam_ukS Offline
                                  Sam_uk
                                  wrote on last edited by
                                  #17

                                  @ccfu You could put it on https://elest.io/open-source/authentik if it's worth $10/month to you.

                                  1 Reply Last reply
                                  1
                                  Reply
                                  • Reply as topic
                                  Log in to reply
                                  • Oldest to Newest
                                  • Newest to Oldest
                                  • Most Votes


                                  • Login

                                  • Don't have an account? Register

                                  • Login or register to search.
                                  • First post
                                    Last post
                                  0
                                  • Categories
                                  • Recent
                                  • Tags
                                  • Popular
                                  • Bookmarks
                                  • Search