sso — lovingly known as the S.S. Octopus or octoboi — is the authentication and authorization system BuzzFeed developed to provide a secure, single sign-on experience for access to the many internal web apps used by our employees. It depends on Google as its authoritative OAuth2 provider and authenticates users against a specific email domain. Further authorization based on Google Group membership can be required on a per-upstream basis. The main idea behind sso is a "double OAuth2" flow, where sso-auth is the OAuth2 provider for sso-proxy and Google is the OAuth2 provider for sso-auth.
Features
- sso-proxy transparently re-validates & refreshes the user's session with sso-auth
- sso is built on top of Bitly’s open source oauth2_proxy
- Authentication and authorization system BuzzFeed developed to provide a secure, single sign-on experience for access to the many internal web apps
- It depends on Google as its authoritative OAuth2 provider
- Authenticates users against a specific email domain
- Further authorization based on Google Group membership can be required on a per-upstream basis
License
MIT LicenseFollow sso
Other Useful Business Software
The full-stack observability platform that protects your dataLayer, tags and conversion data
Code-Cube.io detects issues instantly, alerts you in real time and helps you resolve them fast.
No manual QA. No unreliable data. Just data you can trust and act on.
Rate This Project
Login To Rate This Project
User Reviews
Be the first to post a review of sso!