Hey community,
I searched high and low and couldn't find anything specific, so hopefully somebody can share a bit of their time to to throw this in the right way. Thank you so much for your time!
Basically - we have a small startup and the current moment we're running GSuite for our most of our needs (SSO wise as well) along with 1Password, for where Google OAuth is not available.
We're getting more and more staff and the main problem is keeping all devices connected&secure. As far as device security goes we started using Meraki MDM, but plan to switch to JAMF PRO at some point, just for the sake of better functionality.
The main problem is remote authentication across all devices instead of having local accounts. The go to solution for the past many many years was AD, but I just feel like something's not right doing it from scratch in 2017. We're using GSuite Email and File Storage, so I feel like we would need to switch to MS File Sharing & Exchange for it to make more sense. One of the main issues is that the servers will probably be hosted publicly within data centers and accessible via WAN, since most of us are remote workers. So it kinda is not the standard AD setup, which - in my mind - is mostly office based.
I looked at alternatives like MS AD and AD DS, but they don't support OSX at all, which would leave our Macs with only having local accounts cutting them off from accessing resources.
What options do you think would be better suited for 2017 and onwards? We are across 2 locations in US and Europe. Running mobiles, laptops, desktops (Windows, Mac) and Linux servers (but those are a separate animal).
Thank you for any ideas.
Cheers.
