Sign inSign up

jetcar/eid-oidc-provider

By jetcar

•Updated 8 months ago

Estonian eID OpenID Connect Provider - ID-Card, Mobile-ID & Smart-ID authentication with OAuth2/OIDC

Image
Networking
Security
Web servers
0

2.5K

jetcar/eid-oidc-provider repository overview

Estonian eID OpenID Connect Provider Production-ready OpenID Connect (OIDC) authentication provider supporting Estonian electronic identification methods: ID-Card, Mobile-ID, and Smart-ID.

Features šŸ” Multi-Method Authentication

ID-Card (chip card with PKI certificates) Mobile-ID (SIM-based authentication) Smart-ID (cloud-based authentication) 🌐 Standard OIDC/OAuth2 Flow

Authorization Code Flow Token endpoint with JWT support UserInfo endpoint OpenID Discovery (.well-known/openid-configuration) šŸŽØ Modern UI

React-based authentication interface Responsive design Multi-language support (EN, ET) šŸ“Š Production Ready

Spring Boot 3.4.1 / Java 21 Redis session storage Health check endpoints Swagger/OpenAPI documentation Quick Start Environment Variables Variable Description Default SERVER_PORT HTTPS port 8443 SSL_ENABLED Enable SSL/TLS true REDIS_HOST Redis hostname localhost REDIS_PORT Redis port 6379 Configuration Mount your OIDC client configuration:

Sample Client Configuration (oidc-clients.json) Endpoints Authorization: https://localhost:8443/authorize⁠ Token: https://localhost:8443/token⁠ UserInfo: https://localhost:8443/userinfo⁠ OIDC Discovery: https://localhost:8443/.well-known/openid-configuration⁠ API Docs: https://localhost:8443/swagger-ui.html⁠ Health Check: https://localhost:8443/actuator/health⁠ Integration Example Requirements Redis (for session storage) Valid SSL certificate (PKCS12 keystore) Estonian eID test/production API access Docker Compose Example Security SSL/TLS enabled by default JWT-based access tokens Secure session management with Redis PKCE support for mobile apps Certificate-based authentication validation Supported Authentication Methods ID-Card Challenge-response authentication using PKI certificates stored on chip cards.

Mobile-ID Phone number + personal code authentication via operator API.

Smart-ID Cloud-based authentication with QR code or app notification.

Documentation GitHub Repository API Documentation (after deployment) OIDC Specification Tags latest - Latest stable release master- - Builds from master branch - Specific version releases License MIT License

Support For issues and questions, visit: https://github.com/jetcar/eid-openidc/issues⁠

Note: This provider integrates with Estonian eID infrastructure. For production use, ensure you have proper API credentials and SSL certificates.

Tag summary

Content type

Image

Digest

sha256:7ac1904c2…

Size

147.5 MB

Last updated

8 months ago

docker pull jetcar/eid-oidc-provider