... | ... | @@ -2276,9 +2276,9 @@ we're aware of: |
|
|
| [Authelia][] | SSO, 2FA/webauthn, OIDC, LDAP, rate-limiting, password reset, HA, Go/React | |
|
|
|
| [Authentik][] | SSO, 2FA/webauthn, OIDC, LDAP, Radius, proxy, metrics, Python/TypScript | sponsored by DigitalOcean |
|
|
|
| [FreeIPA][] | SSO, LDAP, DNS, web/CLI UI, C? | built on top of 389 DS (Fedora LDAP server) |
|
|
|
| [Kanidm][] | SSO, 2FA, OIDC, LDAP, Radius, SSH, PAM + offline support, web/CLI UI, Rust | |
|
|
|
| [Keycloak][] | SSO, 2FA, OIDC, OAuth 2, LDAP, SAML 2, Kerberos, SQL, web UI, HA/clustering, Java | [possibly no Webauthn support][], sponsored by RedHat |
|
|
|
| [LemonLDAP-ng][] | SSO, 2FA/webauthn, OIDC, LDAP, SAML, Kerberos, SQL, Perl | [packaged in Debian][] |
|
|
|
| [kanidm][] | SSO, 2FA, OIDC, LDAP, Radius, SSH, PAM + offline support, web/CLI UI, Rust | |
|
|
|
|
|
|
See also [mod_auth_openidc](https://github.com/OpenIDC/mod_auth_openidc) for an Apache module supporting OIDC.
|
|
|
|
... | ... | @@ -2289,7 +2289,7 @@ swap ud-ldap out if we need to, replacing bits of it as we go. |
|
|
|
|
|
[Authelia]: https://www.authelia.com/
|
|
|
[Authentik]: https://goauthentik.io/
|
|
|
[kanidm]: https://github.com/kanidm/kanidm
|
|
|
[Kanidm]: https://github.com/kanidm/kanidm
|
|
|
[LemonLDAP-ng]: https://lemonldap-ng.org/
|
|
|
[packaged in Debian]: https://tracker.debian.org/pkg/lemonldap-ng
|
|
|
[possibly no Webauthn support]: https://github.com/keycloak/keycloak-community/blob/main/design/web-authn-two-factor.md
|
... | ... | |