sso — lovingly known as the S.S. Octopus or octoboi — is the authentication and authorization system BuzzFeed developed to provide a secure, single sign-on experience for access to the many internal web apps used by our employees. It depends on Google as its authoritative OAuth2 provider and authenticates users against a specific email domain. Further authorization based on Google Group membership can be required on a per-upstream basis. The main idea behind sso is a "double OAuth2" flow, where sso-auth is the OAuth2 provider for sso-proxy and Google is the OAuth2 provider for sso-auth.
Features
- sso-proxy transparently re-validates & refreshes the user's session with sso-auth
- sso is built on top of Bitly’s open source oauth2_proxy
- Authentication and authorization system BuzzFeed developed to provide a secure, single sign-on experience for access to the many internal web apps
- It depends on Google as its authoritative OAuth2 provider
- Authenticates users against a specific email domain
- Further authorization based on Google Group membership can be required on a per-upstream basis
License
MIT LicenseFollow sso
Other Useful Business Software
Fully Managed MySQL, PostgreSQL, and SQL Server
Cloud SQL handles your database ops end to end, so you can focus on your app.
Rate This Project
Login To Rate This Project
User Reviews
Be the first to post a review of sso!