Show HN: Open-source OAuth2 & OpenID server Ory Hydra v2
github.com
github.com
Bringing this to v2 was a big one year effort with lots of community contributions and we are excited to finally be able to show it to the world!
I’ve relied on oauth2proxy with Dex as an oidc issuer for this purpose for years. This works but I’m trying to understand if Ory is an advancement in functionality.
Excited to find time to dig into v2 changes, feels like Hydra has corrected a lot of long standing issues and made it much easier to use (I haven't run Kratos yet but having the integration be tighter makes so much sense).
Is there a good description of oathkeeper vs keto? It seems like oathkeeper would use keto but I'm not sure if they're similarly tightly integrated.
Ory Keto and Ory Oathkeeper can play together! Ory Keto implements Google Zanzibar, it's basically a service where you can check if "x is allowed to do y". Ory Oathkeeper on the other hand is something which can check for any given HTTP request: who is the user making the request? is the user allowed to make the request? and finally convert all this information into a common format. However, Ory Oathkeeper does itself not make the decision, it uses e.g. Ory Keto to check the permission itself. Hope this makes sense
I get a 404 when clicking on the SDKs link in the github readme: https://www.ory.sh/docs/hydra/sdk
The correct link is probably https://www.ory.sh/docs/kratos/sdk/index
It doesn't provide a login screen, you need to implement your own flow user interface and use their their api to interface with the auth server.
This is great for the flexibility you have.
Keyckoak covers the basics outh of the box and have a login page implementation ready.