Licensed under MIT.
This project aims to be a FOSS replacement for Duende Identity Server as well as a fully functional, customizable, IAM solution.
- OpenIdConnect Flows
- Client Credentials
- Authorization Code + PKCE
- Password
- Scopes
- Local logins/users
- External logins and SSO
- OpenIdConnect Federation
- SAML Federation
- Roles
Considering delivering as a container as well as a nuget package(s) consumers can pull into their own applications.
To perform on-behalf-of where the user's token comes from a different issuer, Tortis IAM must first trust the issuer.
Example: Users log in using Okta, but backend microservices get their tokens from Tortis IAM.
Okta has a similar concept.
This mechanism could also be use to configure Federation?