Skip to main content

Guides by topic

Choose a topic, narrow the document type, or filter by a name you already know. New to AuthCrunch? Follow the learning path for a complete local setup.

Find a guide

Filter titles, summaries, and aliases. Use Search in the navigation bar to search page contents.

67 of 67 guides

Identity providers​

Connect local users, directories, and external identity providers.

  • Set up a Cognito user pool and client for login through the portal.

  • DiscordGuide

    Register a Discord application and filter access by guild membership and roles.

  • Register a Facebook application and connect it to the portal using OAuth credentials.

  • Connect an OIDC service through discovery, validate provider tokens, map groups to application roles, and troubleshoot missing claims.

  • GitHubGuide

    Add GitHub login to an AuthCrunch portal, grant access by numeric account ID or public organization membership, and troubleshoot callbacks and email claims.

  • GitLabGuide

    Sign in with GitLab.com or GitLab Self-Managed, filter group paths from UserInfo, and verify application access.

  • Register a Google web client, grant application access by account ID, and understand Workspace domain and Cloud Identity group limits.

  • Create a JumpCloud SAML application and connect it to the authentication portal.

  • Connect a Keycloak realm to AuthCrunch, map group membership into the ID token, and verify allowed and denied application access.

  • Connect an LDAP directory using the Microsoft Active Directory and POSIX configuration examples.

  • Understand LDAP binding, user search filters, and the directory lookup performed during login.

  • Register a LinkedIn application and configure its redirect URL and OAuth provider.

  • Configure a local identity store and connect its realm to the authentication portal.

  • Inspect the local users.json structure, including password policy, user records, and revision metadata.

  • Connect an Entra tenant, map app roles to protected application access, and handle missing email, group overage, and Microsoft account types.

  • Connect Microsoft Entra ID using SAML application metadata and signing certificates.

  • Connect an external identity provider to the portal, choose callback URLs and scopes, and turn identity claims into application permissions.

  • Configure OAuth provider startup delays, key retrieval retries, logout, and PKCE.

  • OktaGuide

    Use an Okta custom authorization server, include an ID-token groups claim, and restrict an AuthCrunch application to an assigned group.

  • Find the Ping Identity configuration example and provider setup screenshots.

  • Review SAML identity provider configuration and assertion time synchronization.

  • Static UsersReference

    Define local users, password hashes, and roles inside a Caddyfile identity store.

Login and MFA​

Configure the portal, authentication challenges, and account enrollment.

Sessions and cookies​

Understand tokens, browser cookies, redirects, and logout.

  • Configure the domain, path, and browser attributes of authentication cookies.

  • Configure how an authorization policy redirects unauthenticated requests to login.

  • LogoutGuide

    Configure trusted logout redirects and distinguish portal logout from provider logout.

  • Choose where an authorization policy looks for tokens and the order in which sources are checked.

  • Configure token signature verification with shared secrets, asymmetric keys, and key sources.

  • Limit the destinations accepted by login and logout redirects using domain and path trust rules.

Authorization​

Decide who may access each application and pass identity to it.

Applications and SSO​

Integrate applications with AuthCrunch and identity protocols.

Operations​

Install, manage credentials and messaging, and diagnose your setup.

  • API OverviewReference

    Find the portal, profile, server, and system API families and their intended callers.

  • Find community-written examples of AuthCrunch integrations.

  • Generate an ECDSA P-256 private key using OpenSSL.

  • Get the published AuthCrunch bundle, verify its security modules, and prepare a local learning environment.

  • Generate local password hashes with authdbctl and change passwords through the portal settings.

  • Configure email and file messaging providers for verification codes and account workflows.

  • Choose an identity provider, add authentication controls, and understand what must change before deploying the local example.

  • Portal APIReference

    Use JSON requests to log in and inspect the current portal identity and session.

  • Notes on privileged ports, source IP tracking, and authentication portal configuration details.

  • Configure named credentials and secret manager integrations for AuthCrunch services.

  • Server APIReference

    Inspect and manage portal runtime state and user data through administrative API endpoints.

  • Start hereConcept

    Learn how AuthCrunch connects login to application access, then build and verify your first local setup.

  • System APIReference

    Review communication between portals and gatekeepers, including state synchronization and revocation lists.

  • TroubleshootTroubleshooting

    Diagnose missing security modules, local startup failures, login redirects, and denied access in AuthCrunch.