fusionauth-jwt
paseto
Our great sponsors
fusionauth-jwt | paseto | |
---|---|---|
38 | 26 | |
158 | 3,188 | |
1.3% | 0.1% | |
6.7 | 4.7 | |
2 months ago | 2 days ago | |
Java | PHP | |
Apache License 2.0 | GNU General Public License v3.0 or later |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
fusionauth-jwt
-
Top 6 Open Source Identity and Access Management (IAM) Solutions For Enterprises
FusionAuth is one of the most decorated and successful open-source IAM solutions. It has been downloaded by more than 10 million customers and hosts over 1 million digital identities.
-
Evolutive and robust password hashing using PBKDF2 in .NET
Ideally, I would recommend not handling and storing passwords yourself. It is preferable to use an identity provider (IdP), such as Azure AD B2C, Auth0, or FusionAuth. These systems are designed to manage your users' identity (including their passwords) so you don't have to. You could also use Single Sign-On with cloud providers.
-
Auth0 increases price by 300%
Check out https://fusionauth.io/
-
Java 8 still widely used
Concur.
Another data point. Our open source JWT library[0] and Java client library[1] both target Java 8 because that is widely used.
0: https://github.com/FusionAuth/fusionauth-jwt
1: https://github.com/FusionAuth/fusionauth-java-client
-
Ask HN: Who is hiring? (August 2023)
FusionAuth | Senior Java Engineer, Senior TechOps Engineer, Senior Support Engineer | Full-time | Denver CO, USA | https://fusionauth.io
FusionAuth is the authentication and authorization platform built for devs, by devs. Our software solves the problem of integrating essential user security without adding risk or distracting from the primary application.
Ya know, the one with the features your users want to pay you for.
FusionAuth comes without the risk and complexity that typical identity systems have. With self-hosted or cloud installation, extensive documentation, free options, fast deployment and a no-hassle process, we eliminates hurdles that make it hard for developers to meet their authentication and authorization requirements.
We aren't VC funded, but we are profitable, growing fast, and need your help. We are currently hiring for the following roles:
Senior Java Engineer
Senior TechOps Engineer
Senior Support Engineer
Learn more, including salary info, what makes us tick, and role expectations, here: https://fusionauth.io/jobs
-
SSO yet again - Authentik / Authelia / FusionAuth / Teleport / etc.
But I rarely see a comprehensive comparison that is current for any of them. And then there are others out there like Teleport and FusionAuth.
-
java-jwt VS fusionauth-jwt - a user suggested alternative
2 projects | 25 May 2023
JWT processing for java. Fast: https://github.com/skjolber/java-jwt-benchmark
-
What Developers Need to Know About JWTs
This article is based upon a presentation from Dan Moore of FusionAuth.
- [Self Hosted] Comment j'ai fait ce blog (aka comment installer Fusion Auth and Dound)
-
Integrating FusionAuth with Python Flask: A Step-by-Step Guide
FusionAuth is a powerful identity and access management platform that makes it easy to add authentication and authorization to your applications. In this blog post, we'll explore how to integrate FusionAuth with a Python Flask application using OAuth 2.0, covering features such as login, displaying user profile information, and logout functionality.
paseto
-
JSON Web Proofs
Might I suggest Paseto (https://paseto.io/) - it solves a lot of the headaches of JWT. Signing and encryption are two different things that require two different sets of keys, so you can't mess it up.
(Full disclosure, I've written one implementation: https://github.com/auth70/paseto-ts)
-
Full-stack authentication system using rust (actix-web) and sveltekit
Though we'll be building a session-based authentication system, it's noteworthy that with the introduction of some concepts which will be discussed in due time, you can turn it into JWT- or, more securely and appropriately, PASETO-based authentication system.
- Biscuit 3.0
-
Securing Your Golang Application: Unleashing the Power of Authentication and Authorization
Time we ditch it and use paseto
- Paseto is everything you love about JWT without any of the design deficits
- Why JWTs Suck as Session Tokens (2017)
-
Looking for advice for Go Backend REST API for a Front End React/NodeJS
The PASETO web site goes over it. Mostly it's designed to make you do things the right way and avoid all the security holes you can fall into with JWT.
- Initial impact report about this week's EdDSA Double-PubKey Oracle attack in 40 affected crypto libs
-
Stop Storing Authentication Tokens in JS-accessible Storage
If this is too much to handle, you shouldn't have to! There's already solutions that handle it for you
What are some alternatives?
authentik - The authentication glue you need.
branca - :key: Secure alternative to JWT. Authenticated Encrypted API Tokens for Go.
php-jwt - PHP package for JWT
Symfony Panther - A browser testing and web crawling library for PHP and Symfony
SuperTokens Community - Open source alternative to Auth0 / Firebase Auth / AWS Cognito
wp-graphql-jwt-authentication - Authentication for WPGraphQL using JWT (JSON Web Tokens)
PSJsonWebToken - A PowerShell module that contains functions to create, validate, and test JSON Web Tokens (JWT) as well as the creation of JSON Web Keys (JWK).
Ory Hydra - OpenID Certified™ OpenID Connect and OAuth Provider written in Go - cloud native, security-first, open source API security for your infrastructure. SDKs for any language. Works with Hardware Security Modules. Compatible with MITREid.
Keycloak - Open Source Identity and Access Management For Modern Applications and Services
authelia - The Single Sign-On Multi-Factor portal for web apps
bubble - bubble 旨在为项目快速开发提供一系列的基础能力,方便使用者根据项目需求快速进行功能拓展。已将所有 JAR 包都推送至中央仓库,也会为每个版本的升级改动列出详细的更新日志