Repository / Identity and Access

Identity and Access

Guides and patterns for SSO, MFA, OIDC, LDAP, Active Directory, and identity platform design.

Deploy Authentik as a centralized identity provider on Kubernetes with HA PostgreSQL, integrate it with Traefik for forward auth, and configure SSO for self-hosted services.

authentikssoidentitykubernetestraefikoauthsaml

Lessons from building and inheriting Active Directory environments since NT 3.51 -- covering tiered administration, trust models, PAM, and why most AD deployments are still running designs from 2003.

active-directoryidentitywindows-serversecurityenterprisetiered-administration