Duende Software provides IdentityServer, a flexible OpenID Connect and OAuth 2.0 framework for .NET applications, enabling businesses to implement robust identity and access control solutions. This technology allows companies to maintain full control over their user interface, business logic, and data while ensuring compliance with open standards across various hosting environments.
Funding
Funding not disclosed
Founders
Product
Problem
Many .NET applications struggle to implement flexible and standards-compliant identity and access control, often relying on rigid, off-the-shelf products that lack customization options. This can lead to compromises in user experience, business logic integration, and data management, while also increasing the risk of non-compliance with evolving security standards.
Solution
Duende Software provides IdentityServer, an OpenID Connect and OAuth 2.0 framework designed specifically for ASP.NET Core applications, offering developers full control over identity and access management. Unlike inflexible, pre-built solutions, IdentityServer allows for complete customization of the user interface, business logic, and data integration, ensuring a seamless fit with existing systems. The framework is fully compliant with open standards and certified by the OpenID Foundation, implementing numerous protocols and specifications from the IETF working group. IdentityServer offers unlimited hosting options, allowing deployment on-premises, in the cloud, or within containerized environments like Docker and Kubernetes.
Target Audience
The primary customers are .NET developers and organizations building modern applications that require flexible, standards-compliant identity and access management solutions.
Features
- Standards-compliant OpenID Connect and OAuth 2.0 framework for ASP.NET Core
- Full control over UI, UX, business logic, and data integration
- Support for a wide range of hosting environments, including on-premises, cloud, and containerized deployments
- Implements over a dozen protocols and standards from the OpenID Foundation and IETF
- Customizable APIs and extensibility points for adapting to specific workflows and business rules
- Source code available on GitHub for learning, troubleshooting, and transparent development
- Options for automatic key management and server-side sessions
- Support for multi-tenancy and dynamic authentication providers in the Enterprise Edition