Skip to content
This repository has been archived by the owner on Mar 10, 2024. It is now read-only.

Single sign-on. #423

Open
ItsAGeekThing opened this issue Jun 15, 2022 · 4 comments
Open

Single sign-on. #423

ItsAGeekThing opened this issue Jun 15, 2022 · 4 comments

Comments

@ItsAGeekThing
Copy link
Member

We should look into implementing SSO support in OpenCAD so that communities can have users login into OpenCAD against their own authentication service.

Two options that come to mind are either...

  1. We could implement OpenID support but this would require significant rework of the current login system.

  2. Implement "HTTP Header Authentication", which would allow OpenCAD to sit behind a reverse proxy (think Autheilia or Cloudflare Access). OpenCAD's login flow would be bypassed and authenticate a user based on a header set by the reverse proxy.

I personally am in favor of the 2nd option as I would prefer to have another application handle authentication instead of OpenCAD itself.

@Cambridgeport90
Copy link
Contributor

Cambridgeport90 commented Jun 15, 2022 via email

@phillf
Copy link
Contributor

phillf commented Jun 15, 2022

@Cambridgeport90, do you mean native 2-factor or MFA as component of something like Duo?

@Cambridgeport90
Copy link
Contributor

Cambridgeport90 commented Jun 15, 2022 via email

@phillf
Copy link
Contributor

phillf commented Jun 15, 2022

Okay. Good to know because while possible native 2FA for OpenCAD is possible but a separate conversation.

As a component of something like Duo. From: Phill Fernandes @.> Sent: Wednesday, June 15, 2022 8:30 AM To: opencad-app/OpenCAD-php @.> Cc: Katherine M. Moss @.>; Mention @.> Subject: Re: [opencad-app/OpenCAD-php] Single sign-on. (Issue #423) @Cambridgeport90https://github.com/Cambridgeport90, do you mean native 2-factor or MFA as component of something like Duo? — Reply to this email directly, view it on GitHub<#423 (comment)>, or unsubscribehttps://github.com/notifications/unsubscribe-auth/ADS4MAAH7PZRZE7ZJKNVFCLVPHEFBANCNFSM5YZYV3HA. You are receiving this because you were mentioned.Message ID: @.@.>>

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

3 participants