Oidc.Server
zitadel
Oidc.Server | zitadel | |
---|---|---|
2 | 9 | |
8 | 403 | |
- | - | |
3.6 | 9.7 | |
17 days ago | about 2 years ago | |
C# | Go | |
GNU General Public License v3.0 or later | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Oidc.Server
-
OpenID Connect Flows: From Implicit to Authorization Code with PKCE & BFF
The OpenID Provider (OP) is an authorization server responsible for verifying the identity of the End-User. It authenticates the user and issues identity and access tokens to the Relying Party. For instance, in the diagram, the Abblix OIDC Server, a certified OpenID Foundation library presented by the company Abblix with open source code (available on GitHub), serves as the OpenID Provider. This server ensures that users are who they claim to be and provides the necessary tokens to the applications that need to interact securely with protected resources.
- Abblix OIDC Server. A Certified OAuth 2.0 and OpenID Connect Library for .NET
zitadel
-
My Work
Im one of the authors of ZITADEL the open source identity and access management solution.
-
Authentik or Keycloak
An other Keycloak alternative would be our (I am one of the founders) project ZITADEL.
-
OS Alternative to gcp identity plattform?
You could take a look at https://zitadel.ch/ Or curity https://curity.io/product/
-
What's the biggest missing piece of the puzzle in the self-hosted universe?
I'm biased since I work for ZITADEL (https://github.com/caos/zitadel). Passwordless with FIDO2 has been baked in since the beginning. I reckon that the major Open Source alternatives provide support as well. FIDO2 should work on all major OS and browsers.
-
Event-driven architecture resources
And a bigger project i know is zitadel (https://github.com/caos/zitadel)
-
Fintech startup essentials: free and freemium tools to help you build your fintech company
https://zitadel.ch/ https://github.com/caos/zitadel/
-
Successful SaaS founders: How do you handle auth?
Full disclosure: My company is building ZITADEL, an open source alternative for Auth0 or Keycloak (both still very good, with some drawbacks). https://github.com/caos/zitadel/
-
Okta Signs Definitive Agreement to Acquire Auth0
We are building a cloud-native IAM over here https://github.com/caos/zitadel
It is written in Go and built around event sourcing for a great audit trail. We already support OIDC, Passwordless, RBAC and working on more features each day.
For those who want to run it on-prem we have a kubernetes operator ready in the next few weeks who also manages the database (cockroach).
We run our own service here https://zitadel.ch with a free tier as well
Feel free to engage with us on GitHub discussions.
-
Thinking about User <> Auth modelling in Go
I'm not sure if it makes sense to build your own oauth/oidc server. It's fun to learn all these techniques but you have to maintain much more code. You also have to implement security mechanisms from dev and ops perspectives. There are existing implementations. If you want to check out an existing open source implementation in go you could take a look at the implementaion of my company called zitadel. I would love to answer question if there are any.
What are some alternatives?
authelia - The Single Sign-On Multi-Factor portal for web apps
wordpress-proxy-auth-plugin - The Wordpress Proxy Auth Plugin helps developers/DevOps/admins easily implement authentication and authorization for WordPress by using a JWT token provided by a reverse proxy.
haproxy-lua-oauth - JWT Validation implementation for HAProxy Lua host
awesome-iam - 👤 Identity and Access Management knowledge for cloud platforms
angular-auth-oidc-client - npm package for OpenID Connect, OAuth Code Flow with PKCE, Refresh tokens, Implicit Flow
LDAP Account Manager (LAM) - LDAP Account Manager
FreeIPA - Mirror of FreeIPA, an integrated security information management solution
S.S.Octopus - sso, aka S.S.Octopus, aka octoboi, is a single sign-on solution for securing internal services
Pomerium - Pomerium is an identity and context-aware reverse proxy for zero-trust access to web applications and services.
IndieAuth - This service is being discontinued in favor of indielogin.com
authentik - The authentication glue you need.
susi_server - SUSI.AI server backend - the Artificial Intelligence server for personal assistants https://susi.ai