{"repo":"OpenIDC/mod_sts","free":true,"listed":false,"github":"https://github.com/OpenIDC/mod_sts","clone":"git clone https://github.com/OpenIDC/mod_sts.git","description":"Security Token Exchange Client module for the Apache HTTPd webserver","language":"M4","stars":18,"topics":["apache-httpd","security-token-service","c","apache-module","oauth2","security","authentication"],"license":"Apache-2.0","category":"auth-billing-email","readme_excerpt":"mod sts A security token exchange module for Apache HTTP Server 2.x which allows for exchanging arbitrary security tokens by calling into a remote Security Token Service (STS). Overview This Apache module allows for exchanging a security token (aka. \"source token\") that is presented on an incoming HTTP request for another security token (aka. \"target token\") by calling into a Security Token Service (STS) and then include that target token on the propagated HTTP request to the content or origin server. This can be used in scenario's where an Apache server is put in front of a backend service as a Reverse Proxy/Gateway that handles tokens presented by external clients but needs to forward those requests using some internal security token format, acting as an internal client to the backend service. Note that the backend service can also be an application that is hosted on the Apache server itself, e.g. a PHP application. Rationale The split between external tokens and internal tokens may be enforced for security reasons i.e. separating external requests from internal requests/tokens whilst keeping \"on-behalf-of-a-user\" semantics, or for legacy reasons i.e. when your backend only supports consuming a proprietary/legacy token format/protocol and you don't want to enforce support for that legacy onto your external clients (or vice versa). Tokens Source An source (or: incoming) token can be presented in a header (e.g. an Authorization: bearer header for OAuth 2.0 bearer access token","default_branch":null,"files":null,"tree":[],"storefront":"/r/OpenIDC","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/OpenIDC/mod_sts/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}