Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

We self hosted Kratos only as our IdP: three million total users, about 200k login/logout/session/jwt queries a day, using only four 1C 2G k8s pods with one extra for courier, a standard proxied 4c8g Postgres, everything works fine. Really easy to maintain with simple configuration and fully featured API.

But their documentation is really bad, especially in OSS suites. I generally use Claude Code to read their code, find the matching implementation, and try to figure out how to properly configure.

Anyway, if you need self host your IdP, just go for it, you cannot go wrong.



Exactly our experience (poor documentation). We switched to Authentik because of this.


May I ask how is your experience with authentik?


I use it, I love it! My go to recommendation now!


It’s great. We use it for all of our apps.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: