{"repo":"Renater/Jitsi-SAML2JWT","free":true,"listed":false,"github":"https://github.com/Renater/Jitsi-SAML2JWT","clone":"git clone https://github.com/Renater/Jitsi-SAML2JWT.git","description":"Easily use SAML with JItsi-Meet JWT authentification.","language":"PHP","stars":17,"topics":["saml","docker","jwt"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"Jitsi-SAML2JWT Jitsi-SAML2JWT is a project to easily use SAML authentification with JWT, the new recommended Jitsi-Meet authentification mechanism. Motivation The legacy Shibboleth auth mechanism in Jitsi Jicofo will be removed by the Big Jitsi Auth Refactoring (see this post). So to continue to use SAML with Jitsi, we need an independent system secured by SAML protocol to generate the JWT token. This project provides 2 things : - Stand Alone JWT generator : a simple JWT generator written in PHP using authentification informations provided by an external SAML Proxy SP. - A full running Docker file to deploy the token generator with a Shibboleth SAML SP because sometime it seems complex to deploy Shibboleth by hand. We're providing two generation modes : - A simple one based only on email check. - An advanced one with room validation and private room features. See doc/advanced token generator.md for more details. Authentication Principle The authentication call flow with a SAML SP and the JWT server looks like this : 🛠️ Dependencies - firebase/php-jwt ( Firebase\\JWT\\JWT , Firebase\\JWT\\Key ) Configuration Env variables Before any installation you should create the .env file with your own informations. Then edit the .env values. Shibboleth SP related variables - ENABLE SHIBBOLETH enable and install the local Shibooleth Service Provider. - SHIBBOLETH TEMPLATE XML with shibboleth2.xml template to use (direct idp, with a discovery service or a prebuild federation one). - SP ENTITY","default_branch":null,"files":null,"tree":[],"storefront":"/r/Renater","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Renater/Jitsi-SAML2JWT/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}