Ancestors

Toot

Written by The Duke of Fall :d6: on 2025-01-13 at 16:15

This is probably a silly question, but here goes:

Does anyone use LDAP to do user authentication? I'm not talking about internal access for engineers and others. I mean storing their user data and controlling application RBAC via LDAP.

I ask because a lot of folks keep rolling their own (myself included.)

=> More informations about this toot | More toots from valthonis@dice.camp

Descendants

Written by MxFraud on 2025-01-13 at 16:22

@valthonis You mean for example running FreeIPA (or something like that) to have accounts authenticated against?

Personally, I use authelia [1] and it works for my need, which is not LDAP but oAuth.

I would not try to code and LDAP system from scratch tho.

Is this the kind of answers you wanted?

[1] https://www.authelia.com/

=> More informations about this toot | More toots from mxfraud@tabletop.social

Written by The Duke of Fall :d6: on 2025-01-13 at 16:25

@mxfraud I am attempting to ascertain whether LDAP is used on the front-end at all these days. Tutorials rarely mention it. All the community support is for oAuth or passkeys, or both (which is a good thing!) I never see LDAP talked about for auth except for companies compartmentalizing worker access.

[I am gonna take a look at authelia, though. Rolling your own auth is awful.]

=> More informations about this toot | More toots from valthonis@dice.camp

Written by MxFraud on 2025-01-13 at 17:43

@valthonis oh gosh no, I don't think anything uses LDAP on the front end anymore unless they are forced.

What is left is enterprise software that didn't move away from "but have all our users in active directory".

Which includes a lot of the millitary everywhere I'd assume.

Okta (and microsoft going all in on oAuth) was the nail in the future of LDAP (I think).

if you end up setting up authelia and need some help, I'm more than happy to send config and other files I used in my setup.

=> More informations about this toot | More toots from mxfraud@tabletop.social

Proxy Information
Original URL
gemini://mastogem.picasoft.net/thread/113821938426309092
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
265.752641 milliseconds
Gemini-to-HTML Time
0.674933 milliseconds

This content has been proxied by September (ba2dc).