{"repo":"auroris/OpenIddict-WindowsAuth","free":true,"listed":false,"github":"https://github.com/auroris/OpenIddict-WindowsAuth","clone":"git clone https://github.com/auroris/OpenIddict-WindowsAuth.git","description":"An OpenID Connect authorization server for Windows Integrated Authentication using the OpenIddict library","language":"C#","stars":23,"topics":["openiddict","openid-connect","windows","authentication","iis","openiddict-windowsauth","windows-authentication"],"license":"MIT","category":"auth-billing-email","readme_excerpt":"OpenIddict-WindowsAuth An OpenID Connect authorization server that uses Windows Integrated Authentication as its identity source, built on the OpenIddict library. Note: \"IdentityServer\" in this project refers to the assembly name and configuration section — it is not related to Duende IdentityServer. Contents - Rationale - Prerequisites - Installation - Configuration - Example appsettings.json - Configuration keys - Serilog:MinimumLevel - IdentityServer:PersistKeys - IdentityServer:DataPath - IdentityServer:AccessTokenLifetime - IdentityServer:IdentityTokenLifetime - IdentityServer:AuthorizationCodeLifetime - Supported flows, scopes, and claims - Testing - Testing with oidcdebugger.com - Troubleshooting - License Rationale A drop-in OpenID Connect authorization server that requires no database, no certificate management, and no persistent state. It performs Windows Integrated Authentication against the local machine or Active Directory and returns the resulting identity as standard OIDC tokens. Tradeoffs to be aware of: - By default, signing and encryption keys are ephemeral — regenerated on every application start. Set IdentityServer:PersistKeys to true to survive restarts (see IdentityServer:PersistKeys). - There is no refresh token flow: tokens have a fixed lifetime and clients must re-authenticate when they expire. - Suitable for intranet scenarios where a short-lived token model is acceptable and the user population is already authenticated to Windows. Prerequisites - Wi","default_branch":null,"files":null,"tree":[],"storefront":"/r/auroris","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/auroris/OpenIddict-WindowsAuth/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}