sso — lovingly known as the S.S. Octopus or octoboi — is the authentication and authorization system BuzzFeed developed to provide a secure, single sign-on experience for access to the many internal web apps used by our employees. It depends on Google as its authoritative OAuth2 provider and authenticates users against a specific email domain. Further authorization based on Google Group membership can be required on a per-upstream basis. The main idea behind sso is a "double OAuth2" flow, where sso-auth is the OAuth2 provider for sso-proxy and Google is the OAuth2 provider for sso-auth.
Features
- sso-proxy transparently re-validates & refreshes the user's session with sso-auth
- sso is built on top of Bitly’s open source oauth2_proxy
- Authentication and authorization system BuzzFeed developed to provide a secure, single sign-on experience for access to the many internal web apps
- It depends on Google as its authoritative OAuth2 provider
- Authenticates users against a specific email domain
- Further authorization based on Google Group membership can be required on a per-upstream basis
License
MIT LicenseFollow sso
Other Useful Business Software
Add Two Lines of Code. Get Full APM.
Works out of the box for Rails, Django, Express, Phoenix, and more. Monitoring exceptions and performance in no time.
Rate This Project
Login To Rate This Project
User Reviews
Be the first to post a review of sso!