welcomattic

Version française

Sponsor my open source work

I’m Mathieu Santostefano, member of the Symfony Core Team. Sponsoring me buys framework-level work that your team can leverage in their projects.

Sponsor on GitHub

What sponsoring funds

The goal is $500 a month: two full working days every month, dedicated to Symfony.

Next on the list: I plan to keep improving and extending OAuth2 and OIDC support in the Symfony Security component.

More broadly, I can work on any part of Symfony, Symfony AI and Symfony UX.

Tiers

Monthly

  • $1 a month

    You appreciate my open source work and want to show it. Thank you!

    Choose this tier
  • $5 a month

    My open source work helps you build your software, I'm glad! Thanks a lot for your support!

    Choose this tier
  • $25 a month

    Developer

    You build on my work and want to give back. Your name goes into the SPONSORS.md of my projects.

    Choose this tier
  • $42 a month

    Because 42 is the Answer to the Ultimate Question of Life, the Universe, and Everything.

    Choose this tier

One time

  • $2 one time

    To thank me for a particular contribution.

    Choose this tier
  • $10 one time

    To thank me for a contribution that proved particularly useful to your project.

    Choose this tier
  • $100 one time

    One of my contributions saved a precious amount of time to your team to build your application, and you want to thank me.

    Choose this tier

Payment goes through GitHub Sponsors. Each link opens its checkout with the tier already selected.

oidc_login in Symfony 8.2

Symfony 8.2 speaks OpenID Connect out of the box. I contributed the oidc_login authenticator, which brings the OIDC Authorization Code Flow natively into the Security component: PKCE, the code exchange, ID token signature verification, logout and refresh, all handled for you. “Log in with…” goes from a bundle-and-glue job to a few lines of security.yaml:

# config/packages/security.yaml
security:
    providers:
        oidc_users:
            oidc: ~

    firewalls:
        main:
            provider: oidc_users
            oidc_login:
                provider_uri: '%env(OIDC_PROVIDER_URI)%'
                client_id: '%env(OIDC_CLIENT_ID)%'
                client_authentication:
                    client_secret_basic: '%env(OIDC_CLIENT_SECRET)%'

If your company runs Symfony and authenticates users, that work is now in your framework, maintained by the core team and the community, at no cost to you.

If you ship a product that other people install, a CMS, an e-commerce platform, a PIM, a CRM or a helpdesk, it goes further: your own customers get “Log in with our company identity provider” without you writing, testing or maintaining a single line of OIDC. Enterprise SSO stops being a roadmap item and becomes a line of configuration.

This work was not sponsored. If it helps your team, you can sponsor me after the fact to say thanks.

Read the pull request, the documentation, or run the demo application against several providers.

Sponsors

No active sponsor right now. From the Company tier up, your logo and a link appear here and in the sidebar of the articles.

Past sponsors

  • Sweego, for the development of the Sweego bridges for Mailer and Notifier

Links to sponsors carry rel="sponsored": they are paid links, and the attribute tells search engines so, as Google requires.