Comment on Why isn't using a key file the most common way to log into self-hosted servers?
Flipper@feddit.org 3 days agoIf a service doesnt offer Oidc, just dont self host it. The SSO service can then be properly secured and even if its only a password, at least its not reused.
melmi@lemmy.blahaj.zone 3 days ago
Just put everything that doesn’t have OIDC behind forward auth. OIDC is overrated for selfhosting.