step-ca
Private online certificate authority for internal PKI
step-ca is an open-source online certificate authority for issuing TLS and SSH certificates for internal services and devices. It supports ACME and is fully self-hosted.
Key features
- Private certificate authority
- ACME server
- SSH certificates
- Short-lived certs
Strengths
- Released under the Apache-2.0 license
- First-class Docker support for quick deployment
- Mature project with 8.7k GitHub stars
- Written in Go
step-ca replaces
Compare step-ca
25 head-to-head comparisons.
- step-ca vs Keycloak
- step-ca vs Casbin
- step-ca vs Ory Hydra
- step-ca vs SuperTokens
- step-ca vs ZITADEL
- step-ca vs Logto
- step-ca vs Casdoor
- step-ca vs Ory Kratos
- step-ca vs Open Policy Agent
- step-ca vs Apereo CAS
- step-ca vs Dex
- step-ca vs Hanko
- step-ca vs Pocket ID
- step-ca vs SpiceDB
- step-ca vs LLDAP
- step-ca vs Permify
- step-ca vs OpenFGA
- step-ca vs Ory Keto
- step-ca vs Kanidm
- step-ca vs Cerbos
- step-ca vs 2FAuth
- step-ca vs Boundary
- step-ca vs node-oidc-provider
- step-ca vs Ory Oathkeeper
- step-ca vs Vouch Proxy
Similar identity & sso apps
Keycloak
Identity & SSOOpen-source identity and access management for modern apps
Replaces Okta, Auth0
Casbin
Identity & SSOAuthorization library supporting many access control models
Replaces Auth0 RBAC
Ory Hydra
Identity & SSOCertified OAuth 2.0 and OpenID Connect server
Replaces Okta, Auth0
SuperTokens
Identity & SSOOpen-source user authentication you can self-host
Replaces Auth0, Firebase Auth
ZITADEL
Identity & SSOCloud-native identity infrastructure with multi-tenancy built in
Replaces Auth0, Okta
Logto
Identity & SSODeveloper-friendly authentication and authorization platform
Replaces Auth0, Firebase Auth