awesome-repositories.com
Blog
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectDespreCum realizăm clasamentulPresăServer MCP
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
oauth2-proxy avatar

oauth2-proxy/oauth2-proxy

0
View on GitHub↗
14,576 stele·2,140 fork-uri·Go·MIT·5 vizualizărioauth2-proxy.github.io/oauth2-proxy↗

Oauth2 Proxy

This project is a reverse proxy server that secures internal web services by enforcing authentication against external identity providers. It acts as a gatekeeper for incoming HTTP traffic, validating user identity before forwarding requests to protected backend applications. By integrating with OAuth2 and OIDC providers, the proxy ensures that only authorized users can access internal resources.

The proxy distinguishes itself through its flexible session management and granular access control. It maintains authenticated user state across requests using either encrypted client-side cookies or server-side storage backends, and it supports the extraction of identity claims to enable personalized application logic. Administrators can enforce access policies based on specific user attributes, such as email domains or group memberships, and inject verified identity information into request headers for downstream processing.

Beyond core authentication, the software provides comprehensive traffic management, including path-based routing, WebSocket support, and TLS termination. It offers a declarative configuration system that supports syntax validation and environment variable interpolation, allowing for complex security policies and custom authentication provider integrations. The proxy also handles static content serving and provides detailed operational logging for monitoring system and authentication events.

The software is distributed as precompiled binaries for direct execution or as container images for deployment in cloud-native environments.

Features

  • OAuth2 Providers - Integrates with OAuth2 and OIDC providers to validate user identity before granting access to internal web services.
  • Reverse Proxy Authentication - Acts as a reverse proxy that secures internal web services by enforcing authentication against external identity providers.
  • Web Application Security - Secures internal web applications by enforcing mandatory authentication against external identity providers.
  • Reverse Proxies - Routes incoming HTTP traffic to upstream applications while enforcing access policies and authentication requirements.
  • Attribute-based Access Controls - Restricts access to web services based on verified user attributes like email domains or group memberships.
  • Proxy Configurations - Configures HTTP/HTTPS server endpoints with support for custom TLS certificates, cipher suites, and network binding.
  • Attribute-Based Access Control - Filters incoming traffic based on verified user attributes such as email address, domain membership, or group affiliation.
  • Stateful Session Persistence - Maintains authenticated user state across requests using either encrypted client-side cookies or server-side storage backends.
  • Session Persistence Strategies - Maintains authenticated user state across requests by storing encrypted session tokens in client-side cookies.
  • Identity Header Injections - Injects user information and authentication headers into requests before passing them to backend applications for downstream processing.
  • Session Storage Backends - Maintains authenticated user state using either encrypted client-side cookies or server-side storage backends.
  • Personal Dashboards - Reverse proxy providing authentication with various identity providers.
  • Request Routing - Maps incoming request paths to specific upstream services, supporting path rewriting, WebSocket proxying, and custom timeout settings.
  • Authentication Providers - Integrates with diverse external identity providers through a standardized, provider-agnostic authentication interface.
  • Server-Side Session Stores - Offloads session data to external databases or caches to support larger payloads and improved security revocation.
  • Proxy Authentication - Forwards requests to upstream services only after verifying user identity and enforcing access policies.
  • Request Authentication Middleware - Intercepts network requests to validate user sessions and enforce access control before processing application logic.
  • Configuration Validation - Validates configuration files for errors and required fields before startup to prevent runtime failures.
  • Containerized Deployments - Supports deployment using prebuilt container images and orchestration manifests for cloud-native environments.
  • Declarative Proxy Configurations - Defines routing rules and security policies using structured, declarative configuration files.
  • Authentication Claims - Extracts custom attributes from authentication tokens to enable personalized application logic and header injection.
  • TLS Management - Handles encrypted traffic by providing certificate and key files, with options to enforce specific TLS versions and cipher suites.
  • Proxy Configurations - Manages operational behavior through configuration files, environment variables, and command-line arguments.
  • Custom Authentication Providers - Supports integration of custom identity providers through a standard interface and registration logic.
  • Session Termination Services - Clears local authentication cookies and redirects users to external providers to finalize the logout process.
  • Session Token Refreshers - Manages token expiration and refresh intervals to maintain secure access while reducing re-authentication frequency.
  • YAML Configuration Files - Processes YAML-based configuration files with environment variable interpolation for sensitive data.

Istoric stele

Graficul istoricului de stele pentru oauth2-proxy/oauth2-proxyGraficul istoricului de stele pentru oauth2-proxy/oauth2-proxy

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Start searching with AI

Alternative open-source pentru Oauth2 Proxy

Proiecte open-source similare, clasificate după numărul de funcționalități comune cu Oauth2 Proxy.
  • quarkusio/quarkusAvatar quarkusio

    quarkusio/quarkus

    15,479Vezi pe GitHub↗

    Quarkus is a Kubernetes-native Java framework designed for building high-performance, memory-efficient applications. It utilizes ahead-of-time native compilation to transform Java code into standalone, optimized binaries that eliminate the need for a virtual machine, enabling rapid startup and reduced memory consumption. By performing code augmentation during the build phase, it shifts heavy processing tasks away from runtime, ensuring that applications are optimized for cloud-native environments. The framework distinguishes itself through a unified approach to reactive and imperative program

    Javacloud-nativehacktoberfestjava
    Vezi pe GitHub↗15,479
  • victoriametrics/victoriametricsAvatar VictoriaMetrics

    VictoriaMetrics/VictoriaMetrics

    16,343Vezi pe GitHub↗

    VictoriaMetrics is a high-performance, scalable time series database and observability platform designed for long-term storage and analysis of metric, log, and trace data. It functions as a unified backend for monitoring ecosystems, offering full compatibility with industry-standard protocols and query languages. The system is built to handle massive data volumes through a distributed architecture that supports horizontal scaling and efficient data lifecycle management. The platform distinguishes itself through a storage engine that utilizes consistent hashing for data sharding and log-struct

    Godatabasegrafanagraphite
    Vezi pe GitHub↗16,343
  • symfony/securityAvatar symfony

    symfony/security

    1,199Vezi pe GitHub↗

    This project is a comprehensive security framework for PHP applications, providing a modular system for verifying user identities and enforcing access control policies. It functions as a security middleware that decouples authentication and authorization logic from core application code, allowing for centralized management of user sessions, credentials, and resource access. The framework distinguishes itself through a highly decoupled architecture that separates identity verification from storage mechanisms. It utilizes a strategy-based approach to authentication, enabling developers to imple

    PHPcomponentphpsymfony
    Vezi pe GitHub↗1,199
  • casdoor/casdoorAvatar casdoor

    casdoor/casdoor

    13,814Vezi pe GitHub↗

    Casdoor is a centralized identity and access management platform that functions as an OAuth 2.0 authorization server. It provides a comprehensive suite of services for managing user identities, authentication sessions, and access policies across both web and machine-to-machine applications. Built with a decoupled frontend-backend architecture in Go, the platform supports high-concurrency environments and offers a web-based management interface for administrative tasks. The platform distinguishes itself through its extensive support for federated identity management, allowing integration with

    Goai-gatewayauthauthentication
    Vezi pe GitHub↗13,814
Vezi toate cele 30 alternative pentru Oauth2 Proxy→

Întrebări frecvente

Ce face oauth2-proxy/oauth2-proxy?

This project is a reverse proxy server that secures internal web services by enforcing authentication against external identity providers. It acts as a gatekeeper for incoming HTTP traffic, validating user identity before forwarding requests to protected backend applications. By integrating with OAuth2 and OIDC providers, the proxy ensures that only authorized users can access internal resources.

Care sunt principalele funcționalități ale oauth2-proxy/oauth2-proxy?

Principalele funcționalități ale oauth2-proxy/oauth2-proxy sunt: OAuth2 Providers, Reverse Proxy Authentication, Web Application Security, Reverse Proxies, Attribute-based Access Controls, Proxy Configurations, Attribute-Based Access Control, Stateful Session Persistence.

Care sunt câteva alternative open-source pentru oauth2-proxy/oauth2-proxy?

Alternativele open-source pentru oauth2-proxy/oauth2-proxy includ: quarkusio/quarkus — Quarkus is a Kubernetes-native Java framework designed for building high-performance, memory-efficient applications.… victoriametrics/victoriametrics — VictoriaMetrics is a high-performance, scalable time series database and observability platform designed for long-term… symfony/security — This project is a comprehensive security framework for PHP applications, providing a modular system for verifying user… casdoor/casdoor — Casdoor is a centralized identity and access management platform that functions as an OAuth 2.0 authorization server.… prefecthq/fastmcp — FastMCP is a Python framework designed for building servers that expose functions, resources, and prompts to AI models… awesome-selfhosted/awesome-selfhosted — This project is a community-curated directory of open-source software designed for deployment in private server…