Hello all!
So I am setting up a internal domain that consist of active directory and rhel IDM. I would like to have some way of connecting the the internal network with a VPN that supports SSO. I have been looking around for a good solution but could not find one that would work nicely. I Looked at Wireguard at first but it doesnt seem to support user authentication. Then i found pritunl which at first glance seems great and is foss. only to be disappointment that for SSO you require a enterprise subscription of 70$/month. No thanks I am a home user.
I Know about OpenVPN and it works well when i used it (not in this setup yet) but is rather slow and I was looking if a better alternative exist.
Any ideas or suggestions would be appreciated.
I havent looked deeply into it, but I know that Tailscale has SSO. Maybe this also applies when selfhosting the lighthouse with Headscale?
Headscale
I loked a bit in to tailscale and Heacscale. If i got this straight Headscale is the self hostable version of the serverside?
Yes. It works great, including sso.
http://defguard.gitbook.io/ maybe this
SoftEtherVPN supports Radius authentication. There is also Defguard which supports OIDC.