An open-source Identity Provider (IdP) for modern SSO, supporting SAML, OAuth2/OIDC, LDAP, RADIUS, and more.
authentik is an open-source Identity Provider (IdP) that provides modern single sign-on (SSO) capabilities. It supports a wide range of authentication protocols including SAML, OAuth2/OIDC, LDAP, and RADIUS, designed to be self-hosted from small labs to large production environments. It solves the problem of centralized, secure identity management without relying on proprietary cloud services.
System administrators, DevOps engineers, and organizations needing a self-hosted identity solution for internal or customer-facing applications.
Developers choose authentik for its comprehensive protocol support, scalability, and the ability to fully control their identity infrastructure. Its open-source nature and self-hosting capabilities provide a cost-effective and flexible alternative to commercial identity providers.
The authentication glue you need.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.
Supports SAML, OAuth2/OIDC, LDAP, and RADIUS, enabling integration with diverse legacy and modern systems as highlighted in the README.
Offers deployment via Docker Compose, Kubernetes, AWS CloudFormation, and DigitalOcean Marketplace, catering to various infrastructure setups per the installation documentation.
Designed to handle identity management from small labs to large production clusters, ensuring it grows with organizational needs as stated in the README.
Provides light and dark mode interfaces for application and admin management, improving usability across different preferences.
Requires setup and ongoing maintenance of Docker or Kubernetes infrastructure, which can be resource-intensive for teams without DevOps expertise.
The open-source version relies on community and documentation, lacking formal support channels compared to the enterprise offering mentioned in the README.
May lack advanced integrations or features found in commercial IdPs like Okta or Auth0, as the README positions the enterprise version for robust, large-scale use.
Authentik is an open-source alternative to the following products:
Auth0 is a cloud-based identity and access management platform that provides authentication and authorization services for applications. It supports single sign-on, multi-factor authentication, and social login integrations.
Ping Identity provides enterprise identity and access management solutions, including single sign-on, multi-factor authentication, and API security.
An identity and access management platform that provides secure authentication, authorization, and user management for applications.
Entra ID (formerly Azure Active Directory) is Microsoft's cloud-based identity and access management service for enterprise applications.