Skip to content

Policy Management/Authorization

January 9, 2025
June 15, 2023

Policy for accessing services

blockchain#Wallet/Decentralized ID (DID)

Identity management - Wikiwand
XACML - Wikiwand

Why Every Company Needs a Data Policy - The New Stack

Access-control list - Wikiwand

Role-based access control - Wikiwand mini RBAC (RBACm) = group ACL (ACLg)
What Is Role-Based Access Control (RBAC)? | Okta

Attribute-based access control - Wikiwand policy-based access control

RBAC vs. ABAC: Definitions & When to Use | Okta
Fine-Grained Access Control: Where RBAC falls short - DEV Community

Improving Enterprise Business Process Management Systems: Enrich RBAC and ABAC with ProBAC

Lightweight

tarent/loginsrv: JWT login microservice with plugable backends such as OAuth2, Google, Github, htpasswd, osiam, ..

leesei/docker-auth-server: Dockerized JWT key server

Keycloak

Keycloak

Permify

What is Permify? | Permify
Permify/permify: Permify is an open-source authorization service inspired by Google Zanzibar.

Cerbos

Cerbos: Open-Source Authorization Layer & Access Control System
cerbos/cerbos: Cerbos is the open core, language-agnostic, scalable authorization solution that makes user permissions and authorization simple to implement and manage by writing context-aware access control policies for your application resources.

SuperTokens

SuperTokens, Open Source User Authentication
supertokens/supertokens-core: Open source alternative to Auth0 / Firebase Auth / AWS Cognito

FusionAuth

Self Hosted is Always Free

FusionAuth: Auth. Built for Devs, by Devs
Self-Hosted - FusionAuth

Fief

Open-source authentication platform - Fief

Authelia

Authelia - The Single Sign-On Multi-Factor portal for web apps
authelia/authelia: The Single Sign-On Multi-Factor portal for web apps

Lucia

Lucia
lucia-auth/lucia: Authentication, simple and clean

IndieAuth

IndieAuth - Sign in with your domain name
IndieAuth-brainstorming - IndieWeb

IndieAuth the decentralized identity protocol
OAuth for the Open Web • Aaron Parecki

OpenFGA

Fine Grained Authorization | OpenFGA

Open Policy Agent

Open Policy Agent
Policies - Kubernetes
Open Policy Agent Accepted as CNCF Incubation Level Project
Open Policy Agent’s Mission to Secure the Cloud – The New Stack

The Rego Playground
Open Policy Agent | How Do I Write Policies?
Open Policy Agent | Comparison to Other Systems

permitio/opal: Policy and data administration, distribution, and real-time updates on top of Policy Agents (OPA, Cedar, ...) Open Policy Agent Layer

open-policy-agent/opa-docker-authz: A policy-enabled authorization plugin for Docker.

OPA on Kubernetes

Tremolo Security, Inc. - Tremolo Security
Kubernetes Authorization via Open Policy Agent – ITNEXT
Beyond RBAC in OpenShift - Open Policy Agent - Tremolo Security
Simplify Kubernetes Security with Orchestra - Tremolo Security Orchestra Management portal

OpenShift Commons Briefing: Securing OKD at Multiple Layers - Marc Boorshtein (Tremolo Security) - YouTube
Open Policy Agent (OPA) with the Project’s Co-Creators

Ceder

permitio/cedar-agent: Cedar-agent is the easiest way to deploy and run Cedar
The Cedar Programming Language: Authorization Simplified - The New Stack
Demo of the Cedar Programming Language - The Open Source Language from AWS - YouTube
Open Sourcing AWS Cedar Is a Game Changer for IAM - The New Stack