caddy-auth-portal
caddy-security
Our great sponsors
caddy-auth-portal | caddy-security | |
---|---|---|
15 | 17 | |
668 | 1,234 | |
- | - | |
9.0 | 8.1 | |
over 2 years ago | 16 days ago | |
Go | Go | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
caddy-auth-portal
-
Any recommendations for internal network inventory website?
Caddy Auth Portal. Also has the advantage of providing unified secure 2FA.
-
Why I'm Using HTTP Basic Auth in 2022
I am very happy with the this caddy extension: https://github.com/greenpau/caddy-auth-portal.
Sorts this precise use case for me, need for common login provider. Without the banality of basic auth.
-
Moving reverse proxies
Check out caddy-auth-portal
-
Authentik is the easy Single Sign On tool we all need!
After dabbling with Caddy's auth-portal, nginx Vouch proxy, Keycloak and Authelia I found Authentik.
- Has anyone tried the auth-portal Plugin for Caddy?
-
Discussion: Which reverse proxy is the best?
Usually with this plugin: https://github.com/greenpau/caddy-auth-portal
- Narrowing down the awesome selfhosted list
-
Anyone with experience setting up SSO/Dashboard/Okta alternative?
There’s caddy-auth-portal which I’ve not used myself, but heard good things about.
-
Single Sign On (SSO) with subdomains using Caddy v2
I hope this post helps setting up your SSO with Caddy. I'd highly recommend trying it out if you find yourself always needing to authenticate with different services on your domain – and check out caddy-auth-portal's docs for even more advanced features!
-
Migrating from LastPass to Bitwarden - opinions?
This sounds like an XY Problem. It sounds like you're missing a good IAP solution to deal with access controls. Something like oauth2_proxy, Keycloak, Pomerium, etc. Hell, I've even set up a basic IAP with Caddy and Oauth Portal.
caddy-security
- Caddy-Security: Security App and Plugin for Caddy
-
Security flaws in an SSO plugin for Caddy
There is no "refusal" as far as I can tell. The issues were reported [1] in September 2023 (as was this blog post) and the simplest one has been fixed (insecure random seed). I'm not aware of any public statements from the plugin maintainers, and there is no hostility in the issue comments.
[1]: https://github.com/greenpau/caddy-security/issues?q=is%3Aiss...
> September 18, 2023: The disclosure blog post was released and issues were filed with the original project repository.
I don't see those issues listed in the GitHub project issue tracker https://github.com/greenpau/caddy-security/issues. Have they been deleted?
-
Web authentication for reverse proxy
Check out https://github.com/greenpau/caddy-security
-
What 3rd party auth provider would you guys recommend to use with Caddy on Windows, and are there any tutorials or documentation?
There a pretty comprehensive auth plugin for Caddy. It can do local authentication with a session cookie, which should work with your IPTV apps. If your app can show a login form, it's super easy, but if I remember correctly you can also authenticate with basic auth and store the session in a cookie (this is mostly used to carry over the authentication to a different subdomain).
-
Q: I need help with securing my selfhosted services
I use Caddy + Caddy Security, set up OAuth, and also only expose services over IPv6. It's not extra security, but it's less logs to deal with because nobody is scanning IPv6 address ranges, and there are less IPv6 capable hosts who are compromised.
- Authentication in Go? Best practices
-
Web server with content upload and authentication
Not sure if this fits your bill, but have a look at Caddy web server and its available authentification methods or even more with a plugin
-
Hiding Public IP
Also look at github.com/greenpau/caddy-security to enable MFA for Caddy.
-
Guacamole + LetsEncrypt (Nginx/Træfik) + VPN ? (x-post r/selfhosted)
- Guacamole docker connects to Debian VNC Desktop - Caddy docker offers HTTPS proxy with Guacamole and the Caddy Security plug in for Auth with TOTP
What are some alternatives?
Keycloak - Open Source Identity and Access Management For Modern Applications and Services
scim-for-keycloak - a third party module that extends keycloak by SCIM functionality
oauth2-proxy - A reverse proxy that provides authentication with Google, Azure, OpenID Connect and many more identity providers.
caddy-maxmind-geolocation - Caddy v2 module to filter requests based on source IP geolocation
authentik - The authentication glue you need.
SuperTokens Community - Open source alternative to Auth0 / Firebase Auth / AWS Cognito
dex - OpenID Connect (OIDC) identity and OAuth 2.0 provider with pluggable connectors
webauthn - WebAuthn (FIDO2) server library written in Go
Nginx Proxy Manager - Docker container for managing Nginx proxy hosts with a simple, powerful interface
vouch-proxy - an SSO and OAuth / OIDC login solution for Nginx using the auth_request module
caddy-authorize - Authorization Plugin for Caddy v2 (JWT/PASETO)