g5pw

joined 2 years ago
[–] g5pw@feddit.it 4 points 1 month ago (1 children)

With displays like these, it’s either parallel or SPI. Try to find a chip in the kapton circuit, that is the actual display driver.

Try to find out the FPC pinout, there should be two pins for backlight, find out of there’s any GND, etc… my gut says this is some kind of SPI based controller, 24 pins is too little for a parallel one.

[–] g5pw@feddit.it 3 points 3 months ago

Wow, this looks really nice! I would pair it with a cool dungeon level underneath ☺️

[–] g5pw@feddit.it 9 points 8 months ago

Thank you, this was actually inspiring. I’d like to imagine I was making a better world before, and will continue to do so with all my strengths.

[–] g5pw@feddit.it 11 points 1 year ago (1 children)

The only alternative I know of that goes close to what FreeIPA does (minus the cert part) is kanidm. It does:

  • oauth2
  • ssh key distribution
  • RADIUS
  • PAM/SSSD
  • LDAP

I just noticed they have a beta for multimaster replication, which is nice.

I use it at home. Note, though, that it does not do any hand-holding, and all configuration is done through CLI. Also note, there are docs for the stable or dev branch and there sometimes are big differences between the two.

[–] g5pw@feddit.it 1 points 1 year ago (1 children)

I mean, it is a bit rough, they’re not at 1.0 yet, also: are you looking at the stable or latest docs? That may be the reason the commands do not match with the docs.

[–] g5pw@feddit.it 1 points 1 year ago (3 children)

I didn’t have any issues, do you see anything in the logs?

[–] g5pw@feddit.it 1 points 1 year ago (5 children)

Yeah, sounds like a security feature… I was able to configure Traefik to connect with TLS, verifying the peer certificate.

[–] g5pw@feddit.it 1 points 1 year ago (7 children)

Yes, it should cover all the use cases you mention!

I use oauth2-proxy as ForwardAuth on Traefik so I can protect apps that do not support OAuth/OIDC login/

[–] g5pw@feddit.it 15 points 1 year ago* (last edited 1 year ago) (11 children)

I use kanidm with oauth2-proxy. No issues so far, it was pretty easy to set up.

Note that the connection to kanidm needs to be TLS even if you have a reverse proxy!

EDIT: currently using 80MB RAM for two users and three Service Providers.

[–] g5pw@feddit.it 2 points 1 year ago* (last edited 1 year ago)

I also moved away my domains and the ones of the hackerspace I manage, mainly to:

  • infomaniak (Switzerland): a bit too pushy with extra services, but not bad
  • openprovider (NL): more geared towards bulk users, have to prepay (min 20€), but okay so far
  • aruba: meh, but free mailboxes are nice

I also use Migadu, they have been great so far!

desec.io for DNS, also great and supported by Traefik for DNS-01 ACME challenge.

[–] g5pw@feddit.it 6 points 2 years ago

I think you can create a group for friends and a group for family. If you want more separation I think Authentik handles multi-tenancy as well

[–] g5pw@feddit.it 5 points 2 years ago (1 children)

I’m using sops with my GPG key currently.

view more: next ›