Cloud-Foundations / keymaster
Short term certificate based identity system (ssh/x509 ca + openidc)
☆129Updated last week
Alternatives and similar repositories for keymaster:
Users that are interested in keymaster are comparing it to the libraries listed below
- A Modern automation platform☆173Updated 4 years ago
- A tool for painless server bootstraping☆112Updated last year
- Wireguard peer manager☆77Updated last week
- Command consrv is a SSH to serial console bridge server, originally designed for deployment on gokrazy.org devices. Apache 2.0 Licensed.☆138Updated 3 months ago
- asynchronously synchronise local NSS databases with remote directory services☆146Updated 2 weeks ago
- Automated certificate management using a CFSSL CA.☆220Updated 5 months ago
- handle DNS NOTIFY messages by running a command☆41Updated 3 months ago
- ☆43Updated 3 years ago
- SSH CA administration via CLI and GUI☆73Updated 2 years ago
- ☆43Updated 3 years ago
- A DHCP server chaining middlewares. Similar to CoreDNS and Caddy☆110Updated last week
- Server installations made easy☆118Updated 3 years ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆199Updated this week
- Manage local wireguard interfaces in a distributed system☆67Updated 6 months ago
- BeyondCorp-inspired HTTPS/SSO Access Proxy. Secure internal services outside your VPN/perimeter network during a zero-trust transition.☆251Updated 2 years ago
- Automatically configure Wireguard interfaces in distributed system. It supports Consul as backend.☆212Updated 3 years ago
- Proxy server for ACME DNS challenges written in Go☆83Updated 9 months ago
- Asteroid is a tool designed to help you manage your Wireguard server by letting you easily view/add/remove peers.☆78Updated 5 months ago
- 🔐 step plugin to manage keys and certificates on a cloud KMSs and HSMs☆55Updated this week
- The NetAuth service itself.☆72Updated 6 months ago
- flexible, structured event replication format for DNS servers (command-line tool and Golang package)☆136Updated 11 months ago
- Modern network boot server.☆218Updated last month
- Anti-Abuse for servers at authentication time☆127Updated last week
- Block hosts that attempt to bruteforce SSH using the journald API.☆93Updated 2 years ago
- A Nomad task driver for systemd-nspawn☆55Updated 4 months ago
- A lightweight, fast, and highly secure VRRP daemon.☆59Updated 2 years ago
- OCSP responder for Hashicorp Vault PKI☆63Updated 2 years ago
- An in-memory installation environment for bare metal.☆100Updated 3 years ago
- Scripts to bootstrap internal Certificate Authorities (CAs) using Yubikeys☆78Updated 5 years ago
- API to carry out actions to BMCs☆24Updated last year