KIT | KIT-Bibliothek | Impressum | Datenschutz

Token solutions from KIT for SSH with OIDC

Hardt, Marcus ORCID iD icon 1; Zachmann, Gabriel ORCID iD icon 1; Gudu, Diana ORCID iD icon 1
1 Scientific Computing Center (SCC), Karlsruher Institut für Technologie (KIT)

Abstract:

OIDC (OpenID Connect) is widely used for transforming our digital
infrastructures (e-Infrastructures, HPC, Storage, Cloud, ...) into the token
based world.

OIDC is an authentication protocol that allows users to be authenticated
with an external, trusted identity provider. Although typically meant for
web- based applications, there is an increasing need for integrating
shell- based services.

This contribution delivers an overview of several tools, each of which
provides a solution to a specific aspect of using tokens on the
commandline in production services:

oidc-agent is the tool for obtaining oidc-access tokens on the
commandline. It focuses on security and manages to provide ease of use
at the same time. The agent operates on a users workstation or laptop
and is well integrated with graphical user interfaces of several
operating systems, such as Linux, MacOS, and Windows. Advanced features
include agent-forwarding which allows users to securely obtain access
tokens from remote machines to which they are logged in.

mytoken is both, a server software and a new token type. Mytokens allow
... mehr


Zugehörige Institution(en) am KIT Scientific Computing Center (SCC)
Publikationstyp Vortrag
Publikationsdatum 23.03.2023
Sprache Englisch
Identifikator KITopen-ID: 1000165238
HGF-Programm 46.21.02 (POF IV, LK 01) Cross-Domain ATMLs and Research Groups
Veranstaltung International Symposium on Grids & Clouds (ISGC 2023), Taipeh, Taiwan, 19.03.2023 – 24.03.2023
Schlagwörter OIDC, OpenID Connect, SSH, AAI, IAM
KIT – Die Forschungsuniversität in der Helmholtz-Gemeinschaft
KITopen Landing Page