Our Personal Data Server from scratch! tranquil.farm
pds rust database fun oauth atproto
238
fork

Configure Feed

Select the types of activity you want to include in your feed.

feature: optionally only allow login via SSO #42

open opened by steffo.eu

I think it would be useful to have a way to disable password-based and passkey-based logins entirely, hiding all related functionality from the UI, and only allowing login and registration via the configured SSO method(s).

I believe that would be very useful for organizations managing Tranquil PDS via their own Single-Sign On, as it would both keep things simple for their users (by reducing UI complexity) and for the organizations themselves (by reducing attack surface and having a central place to manage authentication from).

I don't have an in-depth knowledge of ATProto at the moment, so I don't know if direct password authentication is required anywhere; maybe app passwords could be used in those places instead?

sign up or login to add to the discussion
Labels

None yet.

assignee

None yet.

Participants 1
AT URI
at://did:plc:6l7xbgjswn2oauofpz3xagvg/sh.tangled.repo.issue/3mjioxgrbup22