openpubkey
zitadel
openpubkey | zitadel | |
---|---|---|
2 | 9 | |
563 | 403 | |
3.9% | - | |
8.8 | 9.7 | |
3 days ago | about 2 years ago | |
Go | Go | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
openpubkey
- OpenPubkey: Protocol for leveraging OpenID to bind identities to public keys
-
RFC 9420 – A Messaging Layer Security Overview
You could use OpenPubkey [0, 1] to bind your identity key to your say Google or Okta account. With an MFA Cosigner, a malicious Google wouldn't be able to impersonate you.
IF you really wanted to go full cipherpunk, you could use the stuff risc.zero [2] is building to could keep your identity secret via ZKPs over ID Token (JWT).
[0]: OpenPubkey: Augmenting OpenID Connect with User held Signing Keys, https://eprint.iacr.org/2023/296
[1]: https://github.com/openpubkey/openpubkey
[2]: "Under the hood is JWT and OIDC verification on top of the RISC Zero zkVM" https://www.risczero.com/news/bonsai-pay
zitadel
-
My Work
Im one of the authors of ZITADEL the open source identity and access management solution.
-
Authentik or Keycloak
An other Keycloak alternative would be our (I am one of the founders) project ZITADEL.
-
OS Alternative to gcp identity plattform?
You could take a look at https://zitadel.ch/ Or curity https://curity.io/product/
-
What's the biggest missing piece of the puzzle in the self-hosted universe?
I'm biased since I work for ZITADEL (https://github.com/caos/zitadel). Passwordless with FIDO2 has been baked in since the beginning. I reckon that the major Open Source alternatives provide support as well. FIDO2 should work on all major OS and browsers.
-
Event-driven architecture resources
And a bigger project i know is zitadel (https://github.com/caos/zitadel)
-
Fintech startup essentials: free and freemium tools to help you build your fintech company
https://zitadel.ch/ https://github.com/caos/zitadel/
-
Successful SaaS founders: How do you handle auth?
Full disclosure: My company is building ZITADEL, an open source alternative for Auth0 or Keycloak (both still very good, with some drawbacks). https://github.com/caos/zitadel/
-
Okta Signs Definitive Agreement to Acquire Auth0
We are building a cloud-native IAM over here https://github.com/caos/zitadel
It is written in Go and built around event sourcing for a great audit trail. We already support OIDC, Passwordless, RBAC and working on more features each day.
For those who want to run it on-prem we have a kubernetes operator ready in the next few weeks who also manages the database (cockroach).
We run our own service here https://zitadel.ch with a free tier as well
Feel free to engage with us on GitHub discussions.
-
Thinking about User <> Auth modelling in Go
I'm not sure if it makes sense to build your own oauth/oidc server. It's fun to learn all these techniques but you have to maintain much more code. You also have to implement security mechanisms from dev and ops perspectives. There are existing implementations. If you want to check out an existing open source implementation in go you could take a look at the implementaion of my company called zitadel. I would love to answer question if there are any.