{"repo":"mattrobinsonsre/bamf","free":true,"listed":false,"github":"https://github.com/mattrobinsonsre/bamf","clone":"git clone https://github.com/mattrobinsonsre/bamf.git","description":"Open-source secure infrastructure access platform — SSH, Kubernetes, databases, and web apps through a unified control plane","language":"Python","stars":55,"topics":["certificate-authority","fastapi","golang","gplv3","helm-chart","kubernetes","python","rbac","ssh","sso"],"license":"MPL-2.0","category":"deployment-docker-iac","readme_excerpt":"BAMF — Bridge Access Management Fabric Secure infrastructure access with short-lived certificates, centralized audit, and zero-trust tunnels. An open-source alternative to Teleport that builds in minutes with standard toolchains. BAMF gives your team secure, audited access to SSH servers, databases, Kubernetes clusters, and internal web applications — all through a single platform with SSO integration, role-based access control, and session recording. Why BAMF? Teleport's Community Edition switched to a commercial license starting with v16 (June 2024). Companies with 100 employees or $10M revenue cannot legally use it. And even within those limits, SSO is locked to GitHub only — Okta, Azure AD, Google, SAML, and generic OIDC all require Enterprise. BAMF is MPL-2.0 — no usage restrictions, no feature gating: BAMF (MPL-2.0) Teleport Community --- --- --- SSO (OIDC/SAML) All providers included GitHub only (Okta, Azure AD, SAML: Enterprise) Session recording SSH + DB query + HTTP audit SSH only (enhanced recording: Enterprise) Web app access Included Enterprise only Commercial use Unrestricted <100 employees and <$10M revenue Build from source Go + Python, minutes Go + Rust + C + libfido2, hours License MPL-2.0 Commercial (since v16, June 2024) Detailed comparison Features - SSO integration with Auth0, Okta, Google, Azure AD, Keycloak (OIDC), and any SAML 2.0 identity provider. MFA is delegated to the IdP — no TOTP or WebAuthn implementation to maintain. Configuration - SSH acces","default_branch":null,"files":null,"tree":[],"storefront":"/r/mattrobinsonsre","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/mattrobinsonsre/bamf/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}