google / hibaLinks
HIBA is a system built on top of regular OpenSSH certificate-based authentication that allows to manage flexible authorization of principals on pools of target hosts without the need to push customized authorized_users files periodically.
☆383Updated 3 months ago
Alternatives and similar repositories for hiba
Users that are interested in hiba are comparing it to the libraries listed below
Sorting:
- Short term certificate based identity system (ssh/x509 ca + openidc)☆137Updated 3 weeks ago
- Progressively image a mounted disk correctly without corruption☆317Updated 3 years ago
- Silly usage of AWS EC2 IPv6 prefixes☆320Updated 3 years ago
- Turn IP sockets into Unix domain sockets☆369Updated last year
- A non-interactive daemon for host management☆113Updated this week
- Simple Linux seccomp rules without writing any code☆503Updated 2 months ago
- Dirty hack to run a read-only, public Docker registry on almost any static file hosting service (e.g. NGINX, Netlify, S3...)☆178Updated 6 months ago
- build distroless images with alpine tools☆131Updated 3 years ago
- ORBOS - GitOps everything☆114Updated 2 years ago
- BetterTLS: A Name Constraints test suite for HTTPS clients.☆173Updated this week
- 🦠 NVMe-TCP at your fingertips 🦠☆310Updated 7 months ago
- Inspect certificate authorities in container images☆236Updated this week
- 🦐SSH Certificate Authority in a Lambda (on the barbie)☆119Updated 5 years ago
- ☆100Updated 4 years ago
- NoRouter: IP-over-Stdio. The easiest multi-host & multi-cloud networking ever. No root privilege is required.☆360Updated 2 years ago
- Automated certificate management using a CFSSL CA.☆225Updated 10 months ago
- Zero config TLS proxy server that uses SNI☆151Updated last month
- Proxy for enforcing webauthn authentication☆141Updated this week
- Userspace TCP/IP Sockets For WireGuard.☆120Updated 11 months ago
- ☆378Updated 2 years ago
- BeyondCorp-inspired HTTPS/SSO Access Proxy. Secure internal services outside your VPN/perimeter network during a zero-trust transition.☆254Updated 3 weeks ago
- [Soft-deprecated] Reproducible apt/dnf/apk/pacman, with content-addressing☆110Updated last year
- SSH CA administration via CLI and GUI☆70Updated 5 months ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆208Updated 4 months ago
- Provides agent and server plugins for SPIRE to allow TPM 2-based node attestation.☆81Updated 2 years ago
- Build a Firecracker microVM from a container image☆367Updated 6 months ago
- Tool and policy library for reviewing Google Kubernetes Engine clusters against best practices☆525Updated last month
- A small research project aimed at understanding the behaviour of a simple nginx reverse proxy given various upstream server conditions.☆23Updated 2 years ago
- ☆41Updated last week
- Update monitor & manager for applications using the Omaha protocol, optimized for Flatcar Container Linux.☆190Updated this week