webauthn-ruby
awesome-webauthn
webauthn-ruby | awesome-webauthn | |
---|---|---|
5 | 6 | |
624 | 1,352 | |
1.6% | - | |
5.9 | 7.4 | |
2 months ago | 21 days ago | |
Ruby | ||
MIT License | Creative Commons Zero v1.0 Universal |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
webauthn-ruby
-
Passkey Authentication with Rodauth
Rodauth provides first class support for passkeys, implemented on top of the excellent webauthn-ruby gem. It enables using passkeys as a multifactor authentication method, or for passwordless login and registration. In addition to routes, views and database storage, it also provides the complete JavaScript part that interacts with Web Authentication API for zero configuration.
-
I’ve started discussion + work on updating Devise to support passkeys; we need contributors!
Would it make sense to leverage another gem like https://github.com/cedarcode/webauthn-ruby for this? Or are we thinking a completely devise internal implementation? Either way I’m interested in contributing to this movement for devise
-
Apple Passkey
I've used this gem for rails apps https://github.com/cedarcode/webauthn-ruby
-
Multi-Factor Authentication for Rails with WebAuthn and Devise
Luckily, there is a WebAuthn gem for Ruby (thanks!) that will do all the hard work for us. Just run bundle add webauthn.
-
Best practices for Two Factor Auth / 2FA in 2021?
All OTP-based 2FA methods are phishable. For real security, you should be looking at FIDO (U2F or WebAuthN)
awesome-webauthn
-
Discord Rolled Out Yubikeys for All Employees
https://github.com/herrjemand/awesome-webauthn
- List of WebAuthn and Passkey Awesomeness
- Apple Passkey
-
FIDO Alliance
You don't need those either, perhaps https://github.com/herrjemand/awesome-webauthn is more to your liking than the website of a standards organization.
-
Login with a Public Ed25519 Key
> That’s my point. If it’s not worth your time then let others who are interested discuss rather than just pissing all over the author’s project.
I feel like there's a glass houses/stones thing going on here.
Please, quote me anything I said that was "pissing all over" it. I'm getting a strange hurt feeling vibe from you given that my only comments were entirely material.
> And what’s left is essentially wireguard for logins.
I don't get the comparison.
> People love wireguard for its simplicity because it doesn’t use certs and PAKEs and whatnot.
I don't know of a VPN that uses PAKE, so I don't get this comparison, but whatever.
> WebAuthn’s crowd and browser implementers on the other hand seem fixated on making sure users never have the option to deploy the protocol in such a way. That’s the problem.
https://github.com/herrjemand/awesome-webauthn#software-auth...?
- How is your method not to be locked in?
What are some alternatives?
webauthn-with-devise - The companion app for the article "Secure authentication for Rails with WebAuthn and Devise"
webauth-via-ssh - Authentication for web services using ssh public keys.
devise-2fa - Devise 2FA with Time Based OTP/rfc6238 tokens and encrypted secrets.
OpenSK - OpenSK is an open-source implementation for security keys written in Rust that supports both FIDO U2F and FIDO2 standards.
fido2-net-lib - FIDO2 .NET library for FIDO2 / WebAuthn Attestation and Assertion using .NET
SoftU2F - Software U2F authenticator for macOS
devise-otp - Two Factors authentication for Devise using Time Based OTP/rfc6238 tokens.
YubiKey-Guide - Guide to using YubiKey for GnuPG and SSH
fido2 - Open-source FIDO server, featuring the FIDO2 standard. https://demo4.strongkey.com/getstarted/#/openapi/fido
ssh-mars - An experiment using SSH to sign in to websites
webauthn-json - 🔏 A small WebAuthn API wrapper that translates to/from pure JSON using base64url.
discord - RPM Package for discord