Authentik

A self-hosted identity provider for single sign-on that manages authentication and authorization via multiple industry standards.

Authentik screenshot 1

Authentik is an open-source, self-hosted identity provider. It provides a centralized system for authentication, authorization, and user management, allowing administrators to control access to various applications from a single interface. This software serves as a comprehensive identity layer that manages how users are verified and what resources they are permitted to access across a network of services.

The software is deployed as a server and is compatible with multiple infrastructure environments. It supports installation via Docker Compose for small test setups and home labs, Helm charts for larger Kubernetes clusters, AWS CloudFormation templates for cloud deployments, and the DigitalOcean Marketplace for one-click deployment. This flexibility ensures that the system can scale from a single server to a distributed production environment depending on the needs of the organization.

Key features

  • Support for SAML and OAuth2/OIDC protocols
  • LDAP and RADIUS integration
  • Single Sign-On (SSO) capabilities
  • Identity Provider (IdP) functionality
  • User management and authorization controls
  • Compatibility with large production clusters
  • Support for both OIDC and SAML service providers
  • Integration as an OAuth2 client and server
  • Support for SAML identity provider and service provider roles

Authentik is designed for a wide range of users, from hobbyists running home labs to businesses requiring identity management for large-scale production environments. Its architecture allows it to act as a bridge between different authentication standards, enabling the integration of legacy systems and modern web applications. The system functions as both an OAuth2 server and an OIDC provider, ensuring that users can be authenticated across diverse platforms without needing separate credentials for every service. By consolidating these protocols, it reduces the complexity of managing multiple authentication silos.

This tool serves as a flexible identity layer for organizations that prefer to maintain full control over their user data and authentication infrastructure rather than relying on third-party cloud providers.

Last Modified
Software TypeWeb App / Server
Platform
Last Activity15 days ago
Repository Age6 years
LicenseMIT
Open Source Alternative to
Open Source Software.io

Join our newsletter to get shiny new open source software delivered to your inbox. Unsubscribe anytime.