This section describes the methods for authenticating users in Airlock: local accounts, single sign-on protocols, and multi-factor authentication.

  • Local users — creating accounts, assigning roles, custom policies
  • OIDC — configuring OpenID Connect (Keycloak and other IdPs)
  • SAML — single sign-on via SAML (ADFS and other IdPs)
  • OTP/TOTP — one-time codes as a second factor
  • WebAuthn — hardware keys and biometrics as a second factor