<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
    <title>authentication</title>
    <link rel="self" type="application/atom+xml" href="https://links.pgmac.net.au/guest/tags/162/feed"/>
    <updated>2026-05-07T01:07:46+10:00</updated>
    <id>https://links.pgmac.net.au/guest/tags/162/feed</id>
            <entry>
            <id>https://links.pgmac.net.au/links/1528</id>
            <title type="text"><![CDATA[Native FreeBSD Kerberos/LDAP with FreeIPA/IDM]]></title>
            <link rel="alternate" href="https://vermaden.wordpress.com/2026/02/18/native-freebsd-kerberos-ldap-with-freeipa-idm/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/1528"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[I want to make this clear in the first sentence because its biggest chance that people will read it - this article is entirely based on work done by Christian Hofstede-Kuhn (Larvitz) that wrote Integrating FreeBSD 15 with FreeIPA: Native Kerberos and LDAP Authentication recently. Credit goes to him. Besides that I like to share…]]>
            </summary>
            <updated>2026-02-19T00:39:16+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/1478</id>
            <title type="text"><![CDATA[Show HN: If you lose your memory, how to regain access to your computer?]]></title>
            <link rel="alternate" href="https://eljojo.github.io/rememory/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/1478"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[An offline tool that encrypts files and splits the decryption key among trusted friends using Shamir&amp;#039;s Secret Sharing. Open source.]]>
            </summary>
            <updated>2026-02-07T14:01:18+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/1117</id>
            <title type="text"><![CDATA[Keyhive – Local-first access control]]></title>
            <link rel="alternate" href="https://www.inkandswitch.com/keyhive/notebook/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/1117"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[Keyhive is a project exploring local-first access control. It aims to provide a firm basis for secure collaboration, similar to the guarantees of private chat but for any local-first application.]]>
            </summary>
            <updated>2025-10-06T18:14:20+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/975</id>
            <title type="text"><![CDATA[Frequent reauth doesn&amp;#039;t make you more secure]]></title>
            <link rel="alternate" href="https://tailscale.com/blog/frequent-reath-security" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/975"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[Securely connect to anything on the internet with Tailscale. Built on WireGuard®️, Tailscale enables you to make finely configurable connections, secured end-to-end according to zero trust principles, between any resources on any infrastructure.]]>
            </summary>
            <updated>2025-06-13T09:45:10+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/829</id>
            <title type="text"><![CDATA[Open-sourcing OpenPubkey SSH (OPKSSH): integrating single sign-on with SSH]]></title>
            <link rel="alternate" href="https://blog.cloudflare.com/open-sourcing-openpubkey-ssh-opkssh-integrating-single-sign-on-with-ssh/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/829"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[OPKSSH (OpenPubkey SSH) is now open-sourced as part of the OpenPubkey project. This enables users and organizations to configure SSH to work with single sign-on technologies like OpenID Connect, removing the need to manually manage &amp;amp; configure SSH keys without adding a trusted party other than your IdP.]]>
            </summary>
            <updated>2025-05-28T01:00:16+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/743</id>
            <title type="text"><![CDATA[https://keypub.sh/]]></title>
            <link rel="alternate" href="https://keypub.sh/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/743"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[]]>
            </summary>
            <updated>2025-05-28T00:46:06+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/734</id>
            <title type="text"><![CDATA[openauthjs/openauth]]></title>
            <link rel="alternate" href="https://github.com/openauthjs/openauth" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/734"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[▦ Universal, standards-based auth provider. Contribute to toolbeam/openauth development by creating an account on GitHub.]]>
            </summary>
            <updated>2025-05-28T00:44:08+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/647</id>
            <title type="text"><![CDATA[You&amp;#039;ll soon be able to safely and easily move your passkeys between password managers]]></title>
            <link rel="alternate" href="https://www.engadget.com/cybersecurity/youll-soon-be-able-to-safely-and-easily-move-your-passkeys-between-password-managers-161025573.html?guccounter=1&amp;guce_referrer=YW5kcm9pZC1hcHA6Ly9jb20uZ29vZ2xlLmFuZHJvaWQuZ29vZ2xlcXVpY2tzZWFyY2hib3gv&amp;guce_referrer_sig=AQAAAIhx4Ae_LTH0xwIiIjQzNIiEOMzfS1KLqSVy8P_NPHuGJZl-Yz1ktvz5lFHmJsWWg9kA-VfRohKoxjFlYAMvgj4RKJ8Y7kTWSH669kQzpt5Tlq_fP6ujv45lD8uRebllmyULzJoFtig1nOU0Ni3oY41sPhhrp0KQ8RUjUs9kRbPK" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/647"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[]]>
            </summary>
            <updated>2026-01-13T12:00:31+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/595</id>
            <title type="text"><![CDATA[SAML: A technical primer — SSOReady Docs]]></title>
            <link rel="alternate" href="https://ssoready.com/docs/saml/saml-technical-primer" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/595"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[A technical overview of SAML works, and how it fits into your product and your customer&amp;#039;s business]]>
            </summary>
            <updated>2026-01-01T04:00:33+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/581</id>
            <title type="text"><![CDATA[Ubuntu Adds a New Authentication Feature]]></title>
            <link rel="alternate" href="https://news.itsfoss.com/ubuntu-authd/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/581"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[Better security for Ubuntu users. A good step.]]>
            </summary>
            <updated>2025-12-28T08:00:30+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/483</id>
            <title type="text"><![CDATA[stack-auth/stack]]></title>
            <link rel="alternate" href="https://github.com/stack-auth/stack" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/483"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[Open-source Auth0/Clerk alternative. Contribute to stack-auth/stack-auth development by creating an account on GitHub.]]>
            </summary>
            <updated>2025-12-06T14:00:45+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/477</id>
            <title type="text"><![CDATA[https://github.com/ssoready/ssoready]]></title>
            <link rel="alternate" href="https://github.com/ssoready/ssoready" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/477"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[Open-source dev tools for enterprise SSO. Ship SAML + SCIM support this afternoon. - ssoready/ssoready]]>
            </summary>
            <updated>2025-12-07T12:00:20+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/422</id>
            <title type="text"><![CDATA[Install EKS-D with MicroK8s - General Discussions / microk8s - Discuss Kube]]></title>
            <link rel="alternate" href="https://discuss.kubernetes.io/t/install-eks-d-with-microk8s/21479" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/422"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[What is EKS-D
Amazon EKS Distro (EKS-D) is a Kubernetes distribution based on and used by Amazon Elastic Kubernetes Service (Amazon EKS). It provides latest upstream updates as well as extended security patching support…]]>
            </summary>
            <updated>2025-11-27T04:00:17+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/392</id>
            <title type="text"><![CDATA[Federate Kubernetes with AWS IAM using OIDC · reecetech]]></title>
            <link rel="alternate" href="https://reece.tech/posts/oidc-k8s-to-aws/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/392"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[]]>
            </summary>
            <updated>2026-01-23T06:00:19+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/347</id>
            <title type="text"><![CDATA[Introducing Clerk: All of user management not just authentication - Clerk]]></title>
            <link rel="alternate" href="https://clerk.dev/blog/all-of-user-management-not-just-authentication" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/347"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[The task came with a sense of helplessness. We knew what &amp;quot;great&amp;quot; looked like, but it was impractical to build all of that functionality.]]>
            </summary>
            <updated>2026-01-21T06:00:22+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/323</id>
            <title type="text"><![CDATA[https://github.com/supertokens/supertokens-core]]></title>
            <link rel="alternate" href="https://github.com/supertokens/supertokens-core" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/323"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[Open source alternative to Auth0 / Firebase Auth / AWS Cognito  - GitHub - supertokens/supertokens-core: Open source alternative to Auth0 / Firebase Auth / AWS Cognito]]>
            </summary>
            <updated>2026-01-19T06:00:22+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/280</id>
            <title type="text"><![CDATA[Authelia is an open-source authentication/authorization server with 2FA/SSO]]></title>
            <link rel="alternate" href="https://github.com/authelia/authelia" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/280"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[The Single Sign-On Multi-Factor portal for web apps, now OpenID Certified™ - authelia/authelia]]>
            </summary>
            <updated>2026-01-15T06:00:26+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/276</id>
            <title type="text"><![CDATA[https://developer.okta.com/blog/2019/10/21/illustrated-guide-to-oauth-and-oidc]]></title>
            <link rel="alternate" href="https://developer.okta.com/blog/2019/10/21/illustrated-guide-to-oauth-and-oidc" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/276"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[An illustrated guide to explain OAuth and OpenID Connect!]]>
            </summary>
            <updated>2026-01-15T06:00:20+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/232</id>
            <title type="text"><![CDATA[https://aws.amazon.com/blogs/security/how-to-automate-saml-federation-to-multiple-aws-accounts-from-microsoft-azure-active-directory/?sc_channel=sm&amp;amp;sc_publisher=TWITTER&amp;amp;sc_country=Security+%26+Identity&amp;amp;sc_geo=GLOBAL&amp;amp;sc_outcome=awareness&amp;amp;trk=_TWITTER&amp;amp;sc_content=security_blog_automate_SAML_federation&amp;amp;linkId=62627605]]></title>
            <link rel="alternate" href="https://aws.amazon.com/blogs/security/how-to-automate-saml-federation-to-multiple-aws-accounts-from-microsoft-azure-active-directory/?sc_channel=sm&amp;sc_publisher=TWITTER&amp;sc_country=Security+%26+Identity&amp;sc_geo=GLOBAL&amp;sc_outcome=awareness&amp;trk=_TWITTER&amp;sc_content=security_blog_automate_SAML_federation&amp;linkId=62627605" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/232"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[September 12, 2022: This blog post has been updated to reflect the new name of AWS Single Sign-On (SSO) – AWS IAM Identity Center. Read more about the name change here. December 2, 2019: Since the author wrote this post, AWS Single Sign On (AWS IAM Identity Center) has launched native features that simplify using […]]]>
            </summary>
            <updated>2025-12-27T02:00:09+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/171</id>
            <title type="text"><![CDATA[https://aws.amazon.com/blogs/security/aws-single-sign-on-now-enables-command-line-interface-access-for-aws-accounts-using-corporate-credentials/?sc_channel=sm&amp;amp;sc_campaign=AWS_Security&amp;amp;sc_publisher=TWITTER&amp;amp;sc_country=Security%20&amp;amp;%20Identity&amp;amp;sc_geo=GLOBAL&amp;amp;sc_outcome=awareness&amp;amp;trk=_TWITTER&amp;amp;sc_content=security_blog_sso&amp;amp;linkId=50708343]]></title>
            <link rel="alternate" href="https://aws.amazon.com/blogs/security/aws-single-sign-on-now-enables-command-line-interface-access-for-aws-accounts-using-corporate-credentials/?sc_channel=sm&amp;sc_campaign=AWS_Security&amp;sc_publisher=TWITTER&amp;sc_country=Security%20&amp;%20Identity&amp;sc_geo=GLOBAL&amp;sc_outcome=awareness&amp;trk=_TWITTER&amp;sc_content=security_blog_sso&amp;linkId=50708343" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/171"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[May 23, 2022: This blog post is out of date. Please refer here for current info: https://docs.aws.amazon.com/cli/latest/userguide/cli-configure-sso.html September 12, 2022: This blog post has been updated to reflect the new name of AWS Single Sign-On (SSO) – AWS IAM Identity Center. Read more about the name change here. Today, AWS made it easier to use […]]]>
            </summary>
            <updated>2026-04-21T00:00:26+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/164</id>
            <title type="text"><![CDATA[https://aws.amazon.com/blogs/security/how-to-use-service-control-policies-in-aws-organizations/]]></title>
            <link rel="alternate" href="https://aws.amazon.com/blogs/security/how-to-use-service-control-policies-in-aws-organizations/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/164"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[January 20, 2020: Based on customer feedback, we rephrased the fourth goal in the “An example structure with nested OUs and SCPs” section to try to improve clarity. With AWS Organizations, you can centrally manage policies across multiple AWS accounts without having to use custom scripts and manual processes. For example, you can apply service […]]]>
            </summary>
            <updated>2026-04-20T20:00:49+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/156</id>
            <title type="text"><![CDATA[AWS Federated Authentication with Active Directory Federation Services (AD]]></title>
            <link rel="alternate" href="https://aws.amazon.com/blogs/security/aws-federated-authentication-with-active-directory-federation-services-ad-fs/" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/156"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[Today we’d like to walk you through AWS Identity and Access Management (IAM), federated sign-in through Active Directory (AD) and Active Directory Federation Services (ADFS). With IAM, you can centrally manage users, security credentials such as access keys, and permissions that control which resources users can access. Customers have the option of creating users and […]]]>
            </summary>
            <updated>2026-03-19T08:00:25+10:00</updated>
        </entry>
            <entry>
            <id>https://links.pgmac.net.au/links/148</id>
            <title type="text"><![CDATA[https://aws.amazon.com/blogs/security/introducing-aws-single-sign-on/?sc_channel=sm&amp;amp;sc_campaign=AWS_Security&amp;amp;sc_publisher=TWITTER&amp;amp;sc_country=Security%20&amp;amp;%20Identity&amp;amp;sc_geo=GLOBAL&amp;amp;sc_outcome=awareness&amp;amp;trk=_TWITTER&amp;amp;sc_content=awssso&amp;amp;sc_category=AWS_Identity_and_Access_Management&amp;amp;linkId=46975058]]></title>
            <link rel="alternate" href="https://aws.amazon.com/blogs/security/introducing-aws-single-sign-on/?sc_channel=sm&amp;sc_campaign=AWS_Security&amp;sc_publisher=TWITTER&amp;sc_country=Security%20&amp;%20Identity&amp;sc_geo=GLOBAL&amp;sc_outcome=awareness&amp;trk=_TWITTER&amp;sc_content=awssso&amp;sc_category=AWS_Identity_and_Access_Management&amp;linkId=46975058" />
            <link rel="via" type="application/atom+xml" href="https://links.pgmac.net.au/links/148"/>
            <author>
                <name><![CDATA[Paul Macdonnell]]></name>
            </author>
            <summary type="text">
                <![CDATA[September 12, 2022: This blog post has been updated to reflect the new name of AWS Single Sign-On (SSO) – AWS IAM Identity Center. Read more about the name change here. Today, AWS introduced AWS IAM Identity Center (AWS IAM Identity Center), a service that makes it easy for you to centrally manage IAM Identity […]]]>
            </summary>
            <updated>2026-03-18T08:00:21+10:00</updated>
        </entry>
    </feed>
