Homelab front door: reverse proxy and SSO gateway #25

Closed
opened 2026-05-23 20:54:29 +00:00 by coilysiren · 1 comment
Owner

Originally filed by @coilysiren on 2026-05-22T08:25:52Z - https://github.com/coilysiren/infrastructure/issues/243

Problem - Standard homelab layer Kai skipped past.

Reverse proxy options: Traefik, Caddy, Nginx Proxy Manager. The k3s cluster already has an ingress controller, so this is partly covered.

SSO gateway options: Authelia, Authentik, Pocket ID, tinyauth. One auth layer in front of every self-hosted service so login happens once, not per app.

Recommendation: pick an SSO gateway before the self-hosted app count grows. Authentik is full-featured, Authelia is lighter, Pocket ID is minimal OIDC.

Origin: homelab chat sweep, 2026-05-21.

_Originally filed by @coilysiren on 2026-05-22T08:25:52Z - [https://github.com/coilysiren/infrastructure/issues/243](https://github.com/coilysiren/infrastructure/issues/243)_ **Problem** - Standard homelab layer Kai skipped past. Reverse proxy options: **Traefik**, **Caddy**, **Nginx Proxy Manager**. The k3s cluster already has an ingress controller, so this is partly covered. SSO gateway options: **Authelia**, **Authentik**, **Pocket ID**, **tinyauth**. One auth layer in front of every self-hosted service so login happens once, not per app. Recommendation: pick an SSO gateway before the self-hosted app count grows. Authentik is full-featured, Authelia is lighter, Pocket ID is minimal OIDC. Origin: homelab chat sweep, 2026-05-21.
Author
Owner

Iceboxed in the 2026-05-29 backlog burn-down: reverse-proxy/SSO gateway, partly-covered speculative layer. Reopen anytime if it becomes real.

Iceboxed in the 2026-05-29 backlog burn-down: reverse-proxy/SSO gateway, partly-covered speculative layer. Reopen anytime if it becomes real.
Sign in to join this conversation.
No labels
P0
P1
P2
P3
P4
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
coilyco-flight-deck/infrastructure#25
No description provided.