5 个仓库
Tools for managing the expiration and rotation of authentication credentials.
Distinguishing note: Focuses on the lifecycle of keys rather than the initial authentication process.
Explore 5 awesome GitHub repositories matching security & cryptography · Credential Lifecycle Management. Refine with filters or upvote what's useful.
Tailscale is a zero-trust networking overlay that connects distributed devices and services into a private, encrypted mesh network. By utilizing a high-performance, user-space implementation of the WireGuard protocol, it establishes secure peer-to-peer tunnels across diverse network topologies without requiring complex firewall configuration. The platform operates on a centralized control plane that manages global network state, authentication, and policy distribution, ensuring that connectivity is governed by identity rather than traditional IP-based rules. What distinguishes Tailscale is it
Enforces security standards by configuring expiration policies for authentication keys.
Antigravity-Manager is an artificial intelligence model orchestration platform that functions as a unified gateway for interacting with multiple external service providers. It standardizes heterogeneous vendor data structures into a consistent internal schema, allowing third-party tools to interface with various models through a single, normalized API. The system distinguishes itself through automated infrastructure management, including the lifecycle tracking of service accounts and the secure rotation of authentication credentials. By acting as a middleware layer, it intercepts traffic to p
Automates the rotation and lifecycle management of authentication credentials for multiple AI service providers.
Teleport is a zero-trust access platform designed to provide secure, identity-based connectivity to servers, databases, and Kubernetes clusters. It functions as a centralized gateway that replaces static credentials with short-lived, identity-bound cryptographic certificates, effectively eliminating the need for traditional VPNs and long-term secret exposure. The platform distinguishes itself by orchestrating access through a unified control plane that maps external identity provider claims to granular, role-based infrastructure permissions. It enforces security through mutual TLS gateways an
Automates the issuance, rotation, and expiration of short-lived digital identities to eliminate standing access and long-term secret exposure.
systemd is a comprehensive system and service manager for Linux that orchestrates the entire operating system lifecycle. It functions as the primary init system, managing the transition from firmware to a fully initialized user space while providing a unified framework for service orchestration, hardware management, and resource control. The project distinguishes itself through its declarative, unit-based configuration model and dynamic dependency resolution, which allow for efficient, on-demand service activation and socket-based process management. It integrates deep system observability th
Inspects, enumerates, and encrypts system and service credentials for administrative and debugging purposes.
agent-governance-toolkit 是一个用于执行安全策略、管理零信任身份以及沙箱化自主 AI 代理执行的框架。它提供了一个治理层,旨在通过使用安全策略引擎、加密身份管理和运行时执行沙箱来控制代理的行为。 该项目通过多级特权环系统和加密身份网格脱颖而出,该网格保护自主实体之间的通信。它实现了基于衰减的信任评分机制来跟踪实体可靠性,并利用哈希链式、防篡改审计日志来维护可验证的执行历史。 该工具包涵盖了广泛的能力领域,包括防御注入攻击的提示词安全、针对监管标准的自动化合规性映射,以及使用 Saga 模式的自主工作流编排。它还具有用于跟踪健康状况和支出限额的舰队监控,以及用于限制未经授权资源访问的工具执行沙箱。 提供了一个命令行界面,用于执行控制信号、验证治理策略以及管理扩展的安装。
Manages the provisioning, rotation, and revocation of ephemeral credentials using quantum-safe signatures.