google / hiba
HIBA is a system built on top of regular OpenSSH certificate-based authentication that allows to manage flexible authorization of principals on pools of target hosts without the need to push customized authorized_users files periodically.
☆379Updated last month
Alternatives and similar repositories for hiba:
Users that are interested in hiba are comparing it to the libraries listed below
- Short term certificate based identity system (ssh/x509 ca + openidc)☆130Updated last week
- Turn IP sockets into Unix domain sockets☆365Updated 9 months ago
- A non-interactive daemon for host management☆107Updated this week
- Kadeessh (formerly Caddy-SSH) is a general-purpose, extensible, modular, memory-safe SSH server built in Go☆549Updated last week
- A jump-host SSH server that starts machines on-demand☆485Updated 4 years ago
- Silly usage of AWS EC2 IPv6 prefixes☆321Updated 3 years ago
- Imagine your SSH server only listens on an IPv6 address, and where the last 6 digits are changing every 30 seconds as a TOTP code...☆418Updated 3 years ago
- A fancy-schmancy tcpdump-esque TUI, programmed in Go.☆368Updated 2 years ago
- BSD socket API on steroids☆297Updated 6 months ago
- 🦠 NVMe-TCP at your fingertips 🦠☆307Updated 2 months ago
- Zero config TLS proxy server that uses SNI☆143Updated last year
- Progressively image a mounted disk correctly without corruption☆309Updated 3 years ago
- build distroless images with alpine tools☆132Updated 2 years ago
- BetterTLS: A Name Constraints test suite for HTTPS clients.☆168Updated 4 months ago
- ☆99Updated 3 years ago
- Tools for using PIV tokens (like Yubikeys) as an SSH agent, for encrypting data at rest, and more☆200Updated last week
- The missing package manager for golang binaries (its homebrew for "go install")☆179Updated 3 years ago
- Tool and policy library for reviewing Google Kubernetes Engine clusters against best practices☆522Updated last week
- Inspect certificate authorities in container images☆233Updated this week
- Keyless Git signing using Sigstore☆992Updated last week
- ssh-agent for TPMs☆439Updated 3 weeks ago
- PKI support for SSH certificates☆57Updated 3 years ago
- Test ssh login key acceptance without having the private key☆218Updated 3 years ago
- UtahFS is an encrypted storage system that provides a user-friendly FUSE drive backed by cloud storage.☆819Updated 7 months ago
- Offline encryption of Kubernetes Secrets☆178Updated 6 months ago
- ☆579Updated 9 months ago
- Linux Application Level Firewall based on eBPF and NFQUEUE.☆697Updated last year
- PAL: A secret bootstrapping tool for Docker☆84Updated 7 months ago
- A self-service CA for OpenSSH☆718Updated this week
- Linux Process Discovery. C Library, Go bindings, Runtime.☆221Updated 2 years ago