🛡️ uSentry - Identity & Access Management

https://github.com/TCB13/uSentry

cross-posted from: https://lemmy.world/post/28692919

uSentry is a lightweight, self-hosted Identity and Access Management (IAM) and Single Sign-On (SSO) solution designed for homelab and small-scale environments.

⚡ A single PHP file. < 400 lines of code. No database. No background processes. No cloud. Just works. ⚡

Most IAM and SSO solutions require databases, certificates and background services baked into a dozen containers. This is all fine but also also overkill for homelabs and impossible for low-power ARM devices. uSentry is different, it isn't pretty but it sucks less for a lot of use cases.

Enjoy!

5 points · 4 comments · view on lemmy.world

4 Comments

ExperimentalGuy@programming.dev · 1 pts · 1y (3 replies)

I didn't read all too much, but from a quick skim of the README it looks like it directly stores your password and not a hash. I wouldn't use it if that's the case.

elmicha@feddit.org · 2 pts · 1y (1 reply)

No, the README doesn't say it, but in the index.php you can see that you must use password_hash to hash the passwords, and the script uses password_verify like it should be done. .

TCB13@lemmy.world · 2 pts · 1y

I just updated the README to make this more clear. Thanks :)

TCB13@lemmy.world · 1 pts · 1y

No it doesn’t, it only stores safe hashes as per PHP recommendations and also uses the recommended functions to check the submitted login.