49 karma · joined December 8, 2015
I eat, sleep and breath FusionAuth.
[ my public key: https://keybase.io/robotdan; my proof: https://keybase.io/robotdan/sigs/bZ_z6cHOKMlganpI00p5gb2PN9IkuyCyPpXL5olj8eY ]
When you canceled Okta, did you build it in house, or was the AWS Cognito / AWS solution the replacement?
Did you look at anything on-prem like Keycloak or FusionAuth?
If on-premise is a requirement, you may want to look at FusionAuth. On premise, runs on Mac, Linux, Windows, Docker, and Kubernetes. This should check all of your boxes, installs in a few moments with the fast path install or docker-compose up. https://fusionauth.io/
- Okta bought Stormpath .. and killed it. - SAP bought Gigya - Thoma Bravo acquires majority interest in Centrify - Google Cloud acquires Bitium - Akamai bought Janrain - LoginRadius - Series A from M12 (Microsoft Venture Capital) - OneLogin - parternship with Microsoft
I think there are others as well, I'm surprised IBM didn't buy Janrain. Waiting to see who picks up ForgeRock, FusionAuth and Auth0. Most of these companies have taken so much in VC that they will be pricey to buy.
My guess is that Google, Amazon, and maybe IBM want to have a market position in this space, so it will be interesting to see what they do. Amazon already has a decent position with Cognito, Google offers some of this if you're on Firebase. IBM seems to be absent - but they have a lot of catching up to do in general, so perhaps this isn't priority.
Also, I find it is getting more difficult to even find software that can be installed and managed locally. I think there is still a decent market for security software running local and not pushing it out to the "cloud".
This could be an additional topic to add to your guide. Thanks.
https://github.com/inversoft/prime-two-factor/tree/master/we...
Here is an open source Java example of some of the algorithm impl, and an HTML / JS example to test out in the browsers.
https://github.com/inversoft/prime-two-factor/blob/master/sr... https://github.com/inversoft/prime-two-factor/tree/master/we...
Enjoy.
This is about as effective as Microsoft turning off internet access through IE unless you specifically approve each address.
If I could run this in docker - then we'd really have something.
One of which could be a one time group competition.
For example, an office competition, a goal is set by the competition owner, they set the prize amount, % that goes to charity, % that goes to the winner.
They invite the participants and set the duration of the event.
Lots of companies have programs as part of their benefits to encourage exercise, etc. You could partner with benefits companies to set up the competitions for their clients.
What I do find to be a PITA is when you attempt to create a password that does not meet the minimum rules and the error message gives you no indication of what you need to change to meet the requirement.