awesome-repositories.com
博客
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目关于排名机制媒体报道MCP 服务器
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

Directory administration tools

排名更新于 2026年7月19日

For directory administration tools, the strongest matches are kanidm/kanidm (Kanidm is a comprehensive identity management server that natively), steveiliop56/tinyauth (Tinyauth is an identity provider and authentication gateway that) and authorizerdev/authorizer (Authorizer is a centralized identity provider that handles user). authelia/authelia and anomalyco/openauth round out the shortlist. Each is ranked by relevance to your query, popularity and recent activity.

Find the best directory administration tools for your stack. Compare top open-source options ranked by activity and features to pick the right one.

Directory administration tools

用 AI 发现最棒的仓库。我们将通过 AI 为您搜索最匹配的仓库。
  • kanidm/kanidmkanidm 的头像

    kanidm/kanidm

    4,595在 GitHub 上查看↗

    Kanidm is a centralized identity management server designed to handle authentication, authorization, and directory services across distributed infrastructure. It provides a comprehensive framework for managing human and service accounts, utilizing a schema-driven database to store identity records, group memberships, and system attributes. The platform supports a wide range of authentication methods, including passkeys, passwords, and standard protocols like OAuth2, OIDC, LDAP, and RADIUS. The system distinguishes itself through a granular access control engine that enforces security policies

    Kanidm is a comprehensive identity management server that natively supports LDAP, OIDC, and granular access control, making it a direct and robust solution for managing organizational directory services and user authentication.

    RustDirectory ServicesRole-Based Access ControlRole-Based Access Controls
    在 GitHub 上查看↗4,595
  • steveiliop56/tinyauthsteveiliop56 的头像

    steveiliop56/tinyauth

    6,979在 GitHub 上查看↗

    Tinyauth is an authentication middleware service and identity provider that verifies user identities to grant system access. It operates as a standalone server or as an authentication gateway, utilizing a reverse proxy model to intercept requests and validate credentials before traffic reaches protected backend services. The project functions as an OpenID Connect provider for single sign-on experiences and an OAuth 2.0 gateway that delegates verification to external providers such as Google and GitHub. It also acts as an LDAP authentication server, allowing for centralized user management and

    Tinyauth is an identity provider and authentication gateway that supports OIDC, LDAP, and MFA, providing the core functionality needed to manage user access and authentication for your services.

    GoMulti-Factor AuthenticationOpenID Connect ProvidersOIDC Identity Token Issuance
    在 GitHub 上查看↗6,979
  • authorizerdev/authorizerauthorizerdev 的头像

    authorizerdev/authorizer

    1,968在 GitHub 上查看↗

    Authorizer is an open-source identity provider that functions as a centralized authentication and authorization platform. It manages user identities and session lifecycles by implementing standard OpenID Connect protocols, allowing for secure verification across web, mobile, and backend applications. The service is designed as a containerized microservice that provides a unified interface for administrative and authentication operations. The platform distinguishes itself through a multi-tenant architecture that isolates authentication rules and user data across different business domains. It

    Authorizer is a centralized identity provider that handles user authentication, authorization, and SSO, though it lacks native LDAP support for traditional directory service integration.

    GoMulti-Factor AuthenticationOpenID Connect ProvidersRole-Based Access Control
    在 GitHub 上查看↗1,968
  • authelia/autheliaauthelia 的头像

    authelia/authelia

    26,785在 GitHub 上查看↗

    Authelia is a centralized identity and access management server designed to secure web applications through unified authentication and authorization. It functions as an identity authority that enables single sign-on across diverse platforms, allowing users to access multiple services with a single set of credentials. By acting as a standards-compliant provider, it facilitates secure identity propagation and token issuance for client applications. The platform distinguishes itself through its ability to integrate directly with web gateways as a reverse proxy authentication middleware, intercep

    Authelia is a robust identity and access management server that provides SSO, MFA, and LDAP integration, though it functions primarily as an authentication gateway rather than a full-featured directory service for user provisioning.

    GoDirectory ServicesMulti-Factor AuthenticationOpenID Connect Providers
    在 GitHub 上查看↗26,785
  • anomalyco/openauthanomalyco 的头像

    anomalyco/openauth

    6,971在 GitHub 上查看↗

    OpenAuth is a standards-based authentication server and identity provider that implements OAuth 2.0 and OpenID Connect protocols. It serves as a centralized system for managing user identities, issuing access tokens, and orchestrating authentication flows across various services. The project functions as a federated identity gateway, aggregating external providers such as Google, GitHub, Microsoft, Apple, and Discord into a unified login flow. It distinguishes itself with a multi-tenant architecture that supports pluggable identity providers and customizable user interface frameworks for bran

    OpenAuth is a standards-based identity provider and authentication server that handles OIDC and OAuth 2.0 flows, serving as a core component for managing user identities and access across services.

    TypeScriptOpenID Connect ProvidersOpenID Connect SupportOIDC Identity Token Issuance
    在 GitHub 上查看↗6,971
  • ory/kratosory 的头像

    ory/kratos

    13,455在 GitHub 上查看↗

    Kratos is a centralized identity and access management server designed to handle user registration, authentication, and profile management. It functions as an identity flow orchestrator, managing the state and security of authentication processes across web, mobile, and command-line interfaces. The system provides a standards-compliant authorization server that issues tokens and manages delegated access for third-party applications and internal services, supporting multi-factor authentication and custom identity schemas to secure user accounts. The project distinguishes itself through a headl

    Ory Kratos is a robust identity and access management server that handles authentication, registration, and MFA, though it focuses on identity orchestration rather than acting as a traditional LDAP-based directory service.

    GoMulti-Factor AuthenticationMulti-Factor AuthenticationOIDC Identity Token Issuance
    在 GitHub 上查看↗13,455
  • teamhanko/hankoteamhanko 的头像

    teamhanko/hanko

    8,801在 GitHub 上查看↗

    Hanko is an open-source identity provider and customer identity and access management system. It serves as a passkey authentication service and an OAuth and SAML SSO gateway, allowing applications to authenticate users and issue tokens via standard identity protocols. The project distinguishes itself through a strong focus on passwordless access using WebAuthn-based passkeys and email-based passcodes. It provides framework-agnostic authentication interfaces as customizable web components that can be embedded directly into web applications to handle login, registration, and profile management.

    Hanko is a modern identity provider that handles authentication, SSO, and user management, though it focuses on customer-facing applications rather than traditional LDAP-based directory services.

    GoMulti-Factor AuthenticationRole-Based Access ControlAccount Provisioning
    在 GitHub 上查看↗8,801
  • keycloak/keycloakkeycloak 的头像

    keycloak/keycloak

    34,934在 GitHub 上查看↗

    Keycloak is an open-source identity and access management server that provides a centralized platform for user authentication, authorization, and identity federation. It functions as a standards-compliant identity provider, utilizing a centralized engine to validate credentials and issue cryptographically signed tokens based on industry-standard protocols like OpenID Connect and SAML. This enables organizations to secure diverse applications and services through a unified authentication layer. The platform distinguishes itself through its cloud-native orchestration and high-availability capab

    Keycloak is a comprehensive identity and access management server that natively supports OIDC, SAML, role-based access control, and multi-factor authentication, making it a flagship solution for centralized user and access management.

    JavaIdentity ServersIdentity Management SystemsIdentity Providers
    在 GitHub 上查看↗34,934
  • wso2/product-iswso2 的头像

    wso2/product-is

    843在 GitHub 上查看↗

    This platform is an identity and access management suite designed to secure and coordinate digital identities for employees, customers, and automated agents. It functions as an enterprise authentication server, providing centralized single sign-on and multi-factor authentication capabilities to protect access across diverse internal and external applications. The engine operates through event-driven orchestration, triggering modular handlers to process authentication and authorization requests. The system is built on a Java-based middleware architecture that utilizes a dynamic component model

    This platform is a comprehensive enterprise identity and access management suite that provides centralized authentication, SSO, MFA, and role-based access control, fully meeting the requirements for an organizational directory and identity service.

    JavaEnterprise AuthenticationEvent-Driven OrchestrationIdentity and Access Management Servers
    在 GitHub 上查看↗843
  • ldapaccountmanager/lamLDAPAccountManager 的头像

    LDAPAccountManager/lam

    483在 GitHub 上查看↗

    LDAP Account Manager

    LDAP Account Manager provides a web-based interface for managing users, groups, and organizational units within an LDAP directory, serving as a practical tool for directory administration and access control.

    PHPIdentity ManagementIdentity Tools
    在 GitHub 上查看↗483
  • kawhii/ssokawhii 的头像

    kawhii/sso

    936在 GitHub 上查看↗

    This project is a centralized identity and access management platform that functions as a single source of truth for user authentication. It enables organizations to manage user sessions and enforce security policies across multiple connected client applications through a unified service. The platform distinguishes itself by utilizing the Central Authentication Service protocol to facilitate secure identity exchange. It provides a dedicated management interface for registering client applications and defining specific access permissions, while also supporting integration with external social

    This project provides a centralized single sign-on (SSO) and authentication service built on the CAS protocol, offering a focused solution for managing user access and identity within an organization.

    JavaCAS IntegrationsIdentity ProvidersAPI Security Policy Enforcement
    在 GitHub 上查看↗936
一览前 10 名对比
仓库Star 数语言许可证最后推送
kanidm/kanidm4.6KRustmpl-2.02026年2月19日
steveiliop56/tinyauth7KGogpl-3.02026年2月20日
authorizerdev/authorizer2KGoApache-2.02026年6月22日
authelia/authelia26.8KGoapache-2.02026年2月19日
anomalyco/openauth7KTypeScriptMIT2025年7月18日
ory/kratos13.5KGoapache-2.02026年2月21日
teamhanko/hanko8.8KGoother2026年2月19日
keycloak/keycloak34.9KJavaApache-2.02026年6月16日
wso2/product-is843Javaapache-2.02026年2月20日
ldapaccountmanager/lam483PHPNOASSERTION2026年6月17日

Related searches

  • Admin API tools
  • a terminal utility for improving developer productivity
  • Command line utilities
  • CLI framework
  • Network access control
  • Container maintenance tools
  • Active Directory 攻击工具包
  • 项目目录标准化结构