Home / Companies / Tailscale / Blog / Post Details
Content Deep Dive

Secure Networking with Tailscale and Custom OIDC Integration

Blog post from Tailscale

Post Details
Company
Date Published
Author
Charlotte Brandhorst-Satzkorn and Tom D'Netto
Word Count
1,577
Language
-
Hacker News Points
-
Summary

Tailscale has introduced a beta feature allowing users to integrate any OpenID Connect (OIDC) compliant identity provider, expanding beyond the previously limited options like Google, Okta, GitHub, and Azure AD. This enhancement requires a WebFinger endpoint on the authentication domain for identity discovery and administrative verification. The blog humorously explores creating a non-compliant, mock identity provider to test the OIDC integration, emphasizing the complexities of implementing OAuth 2.0 and OIDC specifications. Despite the lighthearted approach, the authors caution against using a homemade IdP due to security concerns, recommending established solutions like Keycloak, Dex, or Ory for those who need to host their own IdP.