Pomerium VS S.S.Octopus

Compare Pomerium vs S.S.Octopus and see what are their differences.

Pomerium

Pomerium is an identity and context-aware reverse proxy for zero-trust access to web applications and services. (by pomerium)

S.S.Octopus

sso, aka S.S.Octopus, aka octoboi, is a single sign-on solution for securing internal services (by buzzfeed)
Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
Pomerium S.S.Octopus
26 5
3,824 3,059
0.9% 0.4%
9.7 0.0
7 days ago 3 days ago
Go Go
Apache License 2.0 MIT License
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

Pomerium

Posts with mentions or reviews of Pomerium. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-11-27.

S.S.Octopus

Posts with mentions or reviews of S.S.Octopus. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-01-09.
  • Use OpenZiti to secure your monitoring
    2 projects | news.ycombinator.com | 9 Jan 2023
    2. An identity aware SSO proxy by Buzzfeed[0]

    I really like Buzzfeed's SSO implementation, but it hasn't received updates in a while and doesn't seem to be maintained to me. I could absolutely see OpenZiti replacing this for me.

    I really like Wireguard and have absolutely no complaints with it -- but if OpenZiti could replace this as well and match the performance I get on Wireguard I would consider implementing it at home (and would probably be a happy enough customer to push for it at work).

    One non-typical use-case I use Wireguard for is being able to do remote game streaming to my Windows hosts via Moonlight+Nvidia Gamestream. Would anyone be able to (anecdotally or scientifically), share how well a use-case like this would work with OpenZiti?

    [0] https://github.com/buzzfeed/sso

  • Libredirect – Redirect social media and websites to privacy friendly front ends
    5 projects | news.ycombinator.com | 30 Jul 2022
    In addition to this suggestion, another viable route is to self-host those applications you rely on and don't expose them to the world (so as to reduce load/attack surface). Using a VPN can allow you to access the applications privately/remotely.

    e.g. I self-host the applications I rely on such as Teddit, Nitter, Bibliogram and Cloudtube and then use Wireguard to always remain connected to the network they are accessible on. I have also implemented identity-aware SSO[1] so I can expose those applications remotely to specific individuals.

    [1] https://github.com/buzzfeed/sso

  • Add Password Protection to Any Site with OAuth2 Proxy - Plus Social Logins
    7 projects | dev.to | 14 Feb 2022
    If oauth2-proxy doesn't suit your needs, there are some projects that have spun-off from oauth2-proxy like pomerium and BuzzFeed's sso. In addition to the open source library, Pomerium offers a paid service with a GUI to help IT staff more easily manage user permissions. BuzzFeed's sso builds upon oauth2-proxy by separating the domain used for auth from the domain used for the proxy (among several other changes).
  • Introduction to Zero Trust on AWS ECS Fargate
    1 project | dev.to | 30 Aug 2021
    SSO to the rescue!
  • Web proxy (Bastion ?) to access Website in "private" network.
    3 projects | /r/selfhosted | 20 May 2021
    https://github.com/buzzfeed/sso - Google only

What are some alternatives?

When comparing Pomerium and S.S.Octopus you can also consider the following projects:

oauth2-proxy - A reverse proxy that provides authentication with Google, Azure, OpenID Connect and many more identity providers.

vouch-proxy - an SSO and OAuth / OIDC login solution for Nginx using the auth_request module

Nginx Proxy Manager - Docker container for managing Nginx proxy hosts with a simple, powerful interface

Ory Hydra - OpenID Certified™ OpenID Connect and OAuth Provider written in Go - cloud native, security-first, open source API security for your infrastructure. SDKs for any language. Works with Hardware Security Modules. Compatible with MITREid.

Gravitational Teleport - Protect access to all of your infrastructure

zitadel - Cloud-native Identity & Access Management solution providing a platform for secure authentication, authorization and identity management.

authelia - The Single Sign-On Multi-Factor portal for web apps

zitadel - ZITADEL - The best of Auth0 and Keycloak combined. Built for the serverless era.

Keycloak - Open Source Identity and Access Management For Modern Applications and Services

traefik - The Cloud Native Application Proxy

farside - A smart redirecting gateway for various frontend services