{"repo":"sebadob/rauthy","free":true,"listed":false,"github":"https://github.com/sebadob/rauthy","clone":"git clone https://github.com/sebadob/rauthy.git","description":"Single Sign-On Identity & Access Management via OpenID Connect, OAuth 2, PAM","language":"Rust","stars":1275,"topics":["oidc","rust","sso","openid-connect","keycloak","fido2","mfa","webauthn","passkey","jwt"],"license":"Apache-2.0","category":"auth-billing-email","readme_excerpt":"Rauthy Rauthy - Single Sign-On Identity & Access Management via OpenID Connect, OAuth 2, and PAM [!NOTE] This application received an independent security audit from Radically Open Security (Frank Plattel and Morgan Hill) as part of the NGI Zero Core funding. There were some findings that were addressed in v0.32.1 . The full report can be found here. What it is Rauthy is a lightweight and easy to use Identity Provider supporting OpenID Connect, OAuth 2, and PAM. It aims to be simple to both set up and operate, with very secure defaults and lots of config options, if you need the flexibility. It puts heavy emphasis on Passkeys and a very strong security in general. The project is written in Rust to be as memory efficient, secure, and fast as possible, and it can run on basically any hardware. If you need Single Sign-On support for IoT or headless CLI tools, it's got you covered as well. You get High-Availability, client branding, UI translation, a nice Admin UI, Events and Auditing, and many more features. By default, it runs on top of Hiqlite and does not depend on an external database (Postgres as an alternative) to make it even simpler to operate, while scaling up to millions of users easily. Secure by default It tries to be as secure as possible by default while still providing all the options needed to be compatible with older systems. For instance, if you create a new OIDC client, it activates ed25519 as the default algorithm for token signing and S256 PKCE flow. This wi","default_branch":null,"files":null,"tree":[],"storefront":"/r/sebadob","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/sebadob/rauthy/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}