• v0.3.2 c31a7b97f5

    v0.3.2 Stable

    omer released this 2026-09-23 10:34:05 -04:00 | 4 commits to main since this release

    [0.3.2] - 2026-09-23

    Fixed

    • Include error details in second-hop auth failure messages.
    Downloads
  • v0.3.1 32ba6f0ba5

    v0.3.1 Stable

    omer released this 2026-09-23 00:18:03 -04:00 | 7 commits to main since this release

    [0.3.1] - 2026-09-23

    Fixed

    • Clean up generated config jsonschema.
    Downloads
  • v0.3.0 48b71515e6

    v0.3.0 Stable

    omer released this 2026-09-22 23:45:26 -04:00 | 9 commits to main since this release

    [0.3.0] - 2026-09-22

    Added

    • Automatic generation of jsonschema for config YAML, triggered by release flow.
    Downloads
  • v0.2.1 2b0a2bada6

    v0.2.1 Stable

    omer released this 2026-09-22 23:43:28 -04:00 | 15 commits to main since this release

    [0.2.1] - 2026-09-18

    Changed

    • Changing a web-UI user's password will no longer flush all TOTP configs associated with that user.
    Downloads
  • v0.2.0 85c64fd48e

    v0.2.0 Stable

    omer released this 2026-09-18 19:30:48 -04:00 | 27 commits to main since this release

    [0.2.0] - 2026-09-18

    Added

    • Added ssh_by_destination_user rate-limiter category (see CONFIG.md for details).

    Changed

    • Standardized names of rate-limiters:
      • http_by_account: HTTP rate-limit applied per web-user account.
      • http_by_source_ip: HTTP rate-limit applied per client IP address.
      • ssh_by_concourse_user: SSH rate-limit applied per Concourse account.
      • ssh_by_destination_user: SSH rate-limit applied per destination account
        (i.e., the username of the account on the actual destination host that the SSH
        attempt is trying to access).
      • ssh_by_source_ip: SSH rate-limit applied per client IP address.
      • ssh_by_destination_host: SSH rate-limit applied per destination host.

    Fixed

    • Adjust some formatting & missing punctuation in README.md.
    Downloads
  • v0.1.2 a9f14c3f09

    v0.1.2 Stable

    omer released this 2026-09-17 22:28:08 -04:00 | 36 commits to main since this release

    [0.1.2] - 2026-09-17

    Changed

    • When the TOTP rule that matches a particular IP calls for a TOTP config name that does not exist, relay an appropriate message back to the SSH client.
    • Improved formatting of second-hop authentication failure message.
    Downloads
  • v0.1.1 fa23ba8f0d

    v0.1.1 Stable

    omer released this 2026-09-17 21:47:17 -04:00 | 39 commits to main since this release

    [0.1.1] - 2026-09-17

    Added

    • Discussion & examples of in-order TOTP rules evaluation added to documentation.

    Fixed

    • Allow the empty string as TOTP config name (referring to the web-UI TOTP) in TOTP rules in the config.
    Downloads
  • v0.1.0 5a0f7e2c0d

    v0.1.0 Stable

    omer released this 2026-09-17 18:37:17 -04:00 | 43 commits to main since this release

    [0.1.0] - 2026-09-17

    Added

    • Initial revision.
    Downloads