Himmelblau 3.0 adds OIDC and TOTP support for Linux authentication

The open-source Himmelblau project has released version 3.0, introducing key enhancements for integrating Linux systems with Microsoft Entra ID. New features include full OpenID Connect support and time-based one-time password authentication via Linux Hello TOTP. These updates expand compatibility for both enterprise and personal use.

Himmelblau, an authentication framework licensed under GPLv3, began as a fork of the Kanidm OAuth2 Client. It is mainly developed by David Mulder, with contributions from SUSE, aiming to make Linux systems work seamlessly in Microsoft environments, similar to Windows, by supporting multi-factor authentication, device trust, and Intune compliance.

Version 3.0.0 marks a significant upgrade with comprehensive OpenID Connect (OIDC) support. Administrators can now connect any OIDC provider using the oidc_issuer_url option, including password and PIN flows, plus break-glass options for emergencies if the provider is unavailable. A standout addition is Domainless OIDC, allowing authentication without initial domain setup. This reduces reliance on Microsoft services, enabling use with alternatives like Keycloak, bolstered by an online check for provider availability introduced in version 2.0.

For two-factor authentication, Linux Hello TOTP enables time-based one-time passwords on Linux. Enrollment occurs through QR codes in the terminal or GNOME QR-Greeter, which requires GNOME 49 or later and mirrors Windows Hello. The QR-Greeter now handles OIDC Device Admin Grants and Microsoft Consumer DAG Flows, permitting personal Microsoft accounts for Linux logins and broadening appeal beyond business settings.

Enterprise features have grown with custom compliance processing, browser SSO policy packages, and a standalone himmelblau-broker service. Deployment simplifies as the daemon launches automatically without configuration on install or upgrade, with single-domain auto-setup and a password-only mode available.

Himmelblau 3.0 supports distributions including openSUSE Tumbleweed, SUSE Linux Enterprise, Fedora, Red Hat Enterprise Linux, Ubuntu, Debian, NixOS, plus new additions Amazon Linux 2023 and Gentoo. It now runs on ARM64/aarch64 architectures. NixOS users benefit from a modern Flake Shell, split modules for himmelblau and himmelblau-desktop, and typed options from XML definitions.

Downloads and details are on GitHub.

Makala yanayohusiana

Pangolin, an open-source remote access platform, has issued version 1.16, introducing an SSH authentication daemon and other enhancements. The update integrates SSH access with the platform's identity system, using certificate-based authentication. It also improves resource visibility and adds server-side data processing features.

Imeripotiwa na AI

SUSE has announced the availability of its Multi-Linux Manager MCP Server v0.5.1 tech preview on the SUSE registry. This release introduces secure, AI-assisted operations for mixed Linux environments. Key features include signed images, CVE scanning, and OAuth 2.0 support.

Bluefin Linux, a Fedora-based distribution, offers the user-friendly interface of ChromeOS alongside the robustness of a full Linux system. It features an immutable core for enhanced security and supports container-focused workflows for developers. The distribution aims to attract both newcomers and experienced users to open-source computing.

Imeripotiwa na AI

Linux Lite 7.8, a lightweight Ubuntu-based distribution, has been released with significant updates to its in-house applications. The new version ports twelve tools to Python and GTK4 while adding support for more software packages. It maintains the Xfce desktop environment and supports a range of Linux kernels for broader hardware compatibility.

Alhamisi, 12. Mwezi wa tatu 2026, 19:13:35

LinuxHub Prime 3.1.5 launches with key updates and fixes

Jumanne, 10. Mwezi wa tatu 2026, 10:44:33

Freedesktop closes controversial age verification API proposal

Jumatatu, 9. Mwezi wa tatu 2026, 10:55:53

Linux distros broaden responses to US age verification laws

Jumanne, 3. Mwezi wa tatu 2026, 09:11:45

Security Onion 2.4.210 launches with Onion AI enhancements

Jumatatu, 2. Mwezi wa tatu 2026, 23:54:11

Oreon 10-2603 updates Linux distro with Centrio installer and Btrfs

Ijumaa, 27. Mwezi wa pili 2026, 10:04:51

Tails 7.5 releases with Thunderbird as additional software

Jumatano, 18. Mwezi wa pili 2026, 10:42:32

Pocketblue project brings Fedora Atomic to select mobile devices

Jumapili, 15. Mwezi wa pili 2026, 12:07:20

Linux Mint 23 expands user account management features

Jumapili, 8. Mwezi wa pili 2026, 14:27:57

Alfie Emanuele to tackle Linux credential gaps at FOSDEM 2026

Ijumaa, 30. Mwezi wa kwanza 2026, 01:42:33

Systemd creator Lennart Poettering launches Linux security startup

 

 

 

Tovuti hii inatumia vidakuzi

Tunatumia vidakuzi kwa uchambuzi ili kuboresha tovuti yetu. Soma sera ya faragha yetu kwa maelezo zaidi.
Kataa