sso — lovingly known as the S.S. Octopus or octoboi — is the authentication and authorization system BuzzFeed developed to provide a secure, single sign-on experience for access to the many internal web apps used by our employees. It depends on Google as its authoritative OAuth2 provider and authenticates users against a specific email domain. Further authorization based on Google Group membership can be required on a per-upstream basis. The main idea behind sso is a "double OAuth2" flow, where sso-auth is the OAuth2 provider for sso-proxy and Google is the OAuth2 provider for sso-auth.
Features
- sso-proxy transparently re-validates & refreshes the user's session with sso-auth
- sso is built on top of Bitly’s open source oauth2_proxy
- Authentication and authorization system BuzzFeed developed to provide a secure, single sign-on experience for access to the many internal web apps
- It depends on Google as its authoritative OAuth2 provider
- Authenticates users against a specific email domain
- Further authorization based on Google Group membership can be required on a per-upstream basis
License
MIT LicenseFollow sso
Other Useful Business Software
MongoDB Atlas runs apps anywhere
MongoDB Atlas gives you the freedom to build and run modern applications anywhere—across AWS, Azure, and Google Cloud. With global availability in over 115 regions, Atlas lets you deploy close to your users, meet compliance needs, and scale with confidence across any geography.
Rate This Project
Login To Rate This Project
User Reviews
Be the first to post a review of sso!