2 ms·
Looks interesting and easy to integrate. We recently developed something similar as a module for the Caddy web server: https://github.com/TNO/auth-by-email http
by mhe 7y ago
Looks interesting and easy to integrate.
We recently developed something similar as a module for the Caddy web server: https://github.com/TNO/auth-by-email https://github.com/TNO/auth-by-email
We developed it for a website that needed (simple) authenticated access for a read-only website, but we didn’t want to store the (hashed) passwords.
Additional features:
- email addresses for the whitelist can be stored as keyed hashes with the key provided at run-time. This way the whitelist is not on on disk in plaintext.
- Adminstration of the whitelist is done by email: upon entry of an unknown email address, the administrator gets an email with a link with which the new entry can be approved or denied.
- Kiosk-mode: user enters e-mail address on laptop, receives link on mobile, clicks link on link in mobile browser. Server detects that it is a different browser, gives user the option to login on session on laptop (for one day) or for session in mobile browser. Useful for giving demos.