goauthentik / goauthentik/authentik
Document device compliance without Agent (mTLS)
Open
area:docs
enhancement/confirmed
- Dominant language
- Python
- Stars
- 25.6k
- Forks
- 2k
- Avg merge
- 1d 1h
- Merged PRs (30d)
- 644
Description
Device compliance can be achieved with a non-agent connector + mTLS stage (both enterprise only)
- Document the policy required
- Document certificate requirement (device certificate needs to be distributed via an MDM, needs to include serial number)
- Document limitations (there's no way to tell any agent to send the latest data to its server)
- UX downsides (users may have to select a certificate when logging in)
Contributor guide
Assessment
This issue has not been assessed yet.