infra:services:hacker-id
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| infra:services:hacker-id [2025/08/07 20:13] – [Changing account name/display name/email] d404d_idp.hackeriet.no | infra:services:hacker-id [2026/04/11 17:41] (current) – d404d_idp.hackeriet.no | ||
|---|---|---|---|
| Line 5: | Line 5: | ||
| Hacker-ID is a member-initiated service to provide a simple-to-use and universal base for implementing SSO services at Hackeriet. | Hacker-ID is a member-initiated service to provide a simple-to-use and universal base for implementing SSO services at Hackeriet. | ||
| - | |||
| - | <WRAP center round important 60%> | ||
| - | This is a proof-of-concept to see how one could reasonably deploy IDP in a simple yet flexible way with few moving parts. | ||
| - | Ask if you have any questions, need help, need an account, or want to integrate something. | ||
| - | |||
| - | Regards, 404'd | ||
| - | </ | ||
| A simple self-service portal on https:// | A simple self-service portal on https:// | ||
| Line 25: | Line 18: | ||
| All services enrolled into Hacker-ID are documented using tags in Netbox: | All services enrolled into Hacker-ID are documented using tags in Netbox: | ||
| * [[https:// | * [[https:// | ||
| - | * [[https:// | + | * [[https:// |
| * [[https:// | * [[https:// | ||
| * [[https:// | * [[https:// | ||
| Line 54: | Line 47: | ||
| </ | </ | ||
| - | <WRAP center round warning | + | <WRAP center round important |
| Note that some applications (e.g. Netbox and Wiki) will not automatically update your profile data (e.g. username/ | Note that some applications (e.g. Netbox and Wiki) will not automatically update your profile data (e.g. username/ | ||
| </ | </ | ||
| Line 77: | Line 70: | ||
| | '' | | '' | ||
| | '' | | '' | ||
| - | | '' | + | | '' |
| | '' | | '' | ||
| | '' | | '' | ||
| Line 128: | Line 121: | ||
| ===== Administrative actions ===== | ===== Administrative actions ===== | ||
| + | Slideset from admin workshop: | ||
| + | {{ : | ||
| ==== Onboarding users through the CLI ==== | ==== Onboarding users through the CLI ==== | ||
| If for some reason a user needs to be onboarded through the CLI, use the following sequence of commands: | If for some reason a user needs to be onboarded through the CLI, use the following sequence of commands: | ||
| Line 157: | Line 152: | ||
| * Located in ''/ | * Located in ''/ | ||
| * One docker compose stack with Traefik (for certificate issuance as LE needs this in-line) and Kanidm | * One docker compose stack with Traefik (for certificate issuance as LE needs this in-line) and Kanidm | ||
| + | * [[https:// | ||
| * Communication between the two are encrypted using a self-signed certificate (Kanidm requires last-hop encryption) | * Communication between the two are encrypted using a self-signed certificate (Kanidm requires last-hop encryption) | ||
| * Created user and group " | * Created user and group " | ||
/srv/hackeriet-wiki/dokuwiki/data/attic/infra/services/hacker-id.1754597585.txt.gz · Last modified: by d404d_idp.hackeriet.no