Skip to main content

Guides by topic

Choose a topic, narrow the document type, or filter by a name you already know. New to AuthCrunch? Follow the learning path for a complete local setup.

Find a guide

Filter titles, summaries, and aliases. Use Search in the navigation bar to search page contents.

67 of 67 guides

Identity providers​

Connect local users, directories, and external identity providers.

  • Set up a Cognito user pool and client for login through the portal.

  • DiscordGuide

    Register a Discord application and filter access by guild membership and roles.

  • Register a Facebook application and connect it to the portal using OAuth credentials.

  • Find the generic OAuth provider example and its metadata and authorization URL settings.

  • GitHubGuide

    Register a GitHub application and configure login, callback URLs, and email claims.

  • GitLabGuide

    Connect GitLab.com or a self-hosted GitLab instance using an OAuth application.

  • Configure Google OAuth credentials, scopes, and the portal callback.

  • Create a JumpCloud SAML application and connect it to the authentication portal.

  • Configure a Keycloak realm, roles, groups, users, and a client for portal login.

  • Connect an LDAP directory using the Microsoft Active Directory and POSIX configuration examples.

  • Understand LDAP binding, user search filters, and the directory lookup performed during login.

  • Register a LinkedIn application and configure its redirect URL and OAuth provider.

  • Configure a local identity store and connect its realm to the authentication portal.

  • Inspect the local users.json structure, including password policy, user records, and revision metadata.

  • Connect Microsoft Entra ID using SAML application metadata and signing certificates.

  • Register a Microsoft application and configure OAuth login for Microsoft accounts.

  • Understand the external OAuth flow, PKCE, role claims, and provider button options.

  • Configure OAuth provider startup delays, key retrieval retries, logout, and PKCE.

  • OktaGuide

    Register an Okta application and configure the portal callback and OAuth credentials.

  • Find the Ping Identity configuration example and provider setup screenshots.

  • Review SAML identity provider configuration and assertion time synchronization.

  • Static UsersReference

    Define local users, password hashes, and roles inside a Caddyfile identity store.

Login and MFA​

Configure the portal, authentication challenges, and account enrollment.

Sessions and cookies​

Understand tokens, browser cookies, redirects, and logout.

  • Configure the domain, path, and browser attributes of authentication cookies.

  • Configure how an authorization policy redirects unauthenticated requests to login.

  • LogoutGuide

    Configure trusted logout redirects and distinguish portal logout from provider logout.

  • Choose where an authorization policy looks for tokens and the order in which sources are checked.

  • Configure token signature verification with shared secrets, asymmetric keys, and key sources.

  • Limit the destinations accepted by login and logout redirects using domain and path trust rules.

Authorization​

Decide who may access each application and pass identity to it.

Applications and SSO​

Integrate applications with AuthCrunch and identity protocols.

Operations​

Install, manage credentials and messaging, and diagnose your setup.

  • API OverviewReference

    Find the portal, profile, server, and system API families and their intended callers.

  • Find community-written examples of AuthCrunch integrations.

  • Generate an ECDSA P-256 private key using OpenSSL.

  • Get the published AuthCrunch bundle, verify its security modules, and prepare a local learning environment.

  • Generate local password hashes with authdbctl and change passwords through the portal settings.

  • Configure email and file messaging providers for verification codes and account workflows.

  • Choose an identity provider, add authentication controls, and understand what must change before deploying the local example.

  • Portal APIReference

    Use JSON requests to log in and inspect the current portal identity and session.

  • Notes on privileged ports, source IP tracking, and authentication portal configuration details.

  • Configure named credentials and secret manager integrations for AuthCrunch services.

  • Server APIReference

    Inspect and manage portal runtime state and user data through administrative API endpoints.

  • Start hereConcept

    Learn how AuthCrunch connects login to application access, then build and verify your first local setup.

  • System APIReference

    Review communication between portals and gatekeepers, including state synchronization and revocation lists.

  • TroubleshootTroubleshooting

    Diagnose missing security modules, local startup failures, login redirects, and denied access in AuthCrunch.