Skip to main content

mlflow-oidc-auth

License PyPI Downloads Ask DeepWiki

OpenID Connect (OIDC) authentication and authorization plugin for MLflow.

This plugin allows you to use OIDC for user management in MLflow, enabling single sign-on (SSO) capabilities and centralized user management.

Disclaimer

This project is not affiliated with, endorsed by, or sponsored by the MLflow Project, Databricks, the Linux Foundation, or LF Projects, LLC. MLflow and related marks are trademarks of their respective owners. Maintained by Kharkevich Engineering Lab.

Features

  • OIDC-based authentication for MLflow UI and API
  • User management through OIDC provider
  • User-level access control
  • Group-based access control
  • Permissions management based on regular expressions (allows or denies access to specific MLflow resources based on regular expressions and assigns permissions to users or groups)
  • Support for session, JWT, and basic authentication methods
  • Compatible with mlflow-client (basic auth)

Documentation

For detailed documentation, please refer to the docs. AI generated documentation is available at DeepWiki.

Quick Start

To get the full version (with entire MLflow and all dependencies), run:

python3 -m venv venv
source venv/bin/activate
python3 -m pip install mlflow-oidc-auth[full]
mlflow server --app-name oidc-auth --host 0.0.0.0 --port 8080

Webhook secret encryption key 🔐

Webhook secrets are stored encrypted in the database using a Fernet key. If you plan to use MLflow webhooks with secrets, set the encryption key in the environment variable MLFLOW_WEBHOOK_SECRET_ENCRYPTION_KEY before creating any webhooks. Generate a key with:

MLFLOW_WEBHOOK_SECRET_ENCRYPTION_KEY=$(python -c "from cryptography.fernet import Fernet; print(Fernet.generate_key().decode())")
export MLFLOW_WEBHOOK_SECRET_ENCRYPTION_KEY

Important: keep this key stable across application restarts and replicas. If the key is lost or changed after webhooks are created, previously stored secrets cannot be decrypted and will cause webhook listing to fail until you restore the original key or remove/rotate the affected webhook secrets.

Development

For development quick start, please refer to the Development and Contribution section. Contribution guidelines are available in CONTRIBUTING.md.

License

Apache 2 Licensed. For more information, please see LICENSE.

Based on MLflow basic-auth plugin

https://github.com/mlflow/mlflow/tree/master/mlflow/server/auth

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

mlflow_oidc_auth-7.16.0.tar.gz (893.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

mlflow_oidc_auth-7.16.0-py3-none-any.whl (1.1 MB view details)

Uploaded Python 3

File details

Details for the file mlflow_oidc_auth-7.16.0.tar.gz.

File metadata

  • Download URL: mlflow_oidc_auth-7.16.0.tar.gz
  • Upload date:
  • Size: 893.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/7.0.0 CPython/3.13.14

File hashes

Hashes for mlflow_oidc_auth-7.16.0.tar.gz
Algorithm Hash digest
SHA256 cb1f8348f6970f53469d8de53f6ca4bcc15c357426b59d80cd12f79eb8247738
MD5 aad397d58270b5787d3bd00b63ceef01
BLAKE2b-256 d21147092fa5ead194e907118d8f37d2a68125100eabb4e455e17f39a82cb4ee

See more details on using hashes here.

Provenance

The following attestation bundles were made for mlflow_oidc_auth-7.16.0.tar.gz:

Publisher: pypi.yml on mlflow-oidc/mlflow-oidc-auth

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file mlflow_oidc_auth-7.16.0-py3-none-any.whl.

File metadata

File hashes

Hashes for mlflow_oidc_auth-7.16.0-py3-none-any.whl
Algorithm Hash digest
SHA256 11491089a7323e24d33efded0888b9353bba9f4b036932940d662f2ba4beb247
MD5 c228c574e6b805bab42f7cc326f8183f
BLAKE2b-256 c79b76e484a37e3f98cdf1d3adc4eaa0cb8de74cd4ae0d82720b13e24f1b0aa3

See more details on using hashes here.

Provenance

The following attestation bundles were made for mlflow_oidc_auth-7.16.0-py3-none-any.whl:

Publisher: pypi.yml on mlflow-oidc/mlflow-oidc-auth

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Release history Release notifications | RSS feed

7.18.1

2 files

7.18.0

2 files

7.17.0

2 files

This release

7.16.0 This release

2 files

7.15.0

2 files

7.14.0

2 files

7.13.0

2 files

7.12.3

2 files

7.12.2

2 files

7.12.1

2 files

7.12.0

2 files

7.11.0

2 files

7.10.0

2 files

7.9.0

2 files

7.8.1

2 files

7.8.0

2 files

7.7.3

2 files

7.7.2

2 files

7.7.1

2 files

7.7.0

2 files

7.6.0

2 files

7.5.1

2 files

7.5.0

2 files

7.4.8

2 files

7.4.7

2 files

7.4.6

2 files

7.4.5

2 files

7.4.4

2 files

7.4.3

2 files

7.4.2

2 files

7.4.1

2 files

7.4.0

2 files

7.3.5

2 files

7.3.4

2 files

7.3.3

2 files

7.3.2

2 files

7.3.1

2 files

7.3.0

2 files

7.2.0

2 files

7.1.1

2 files

7.1.0

2 files

7.0.3

2 files

7.0.2

2 files

7.0.1

2 files

7.0.0

2 files

6.7.1

2 files

6.7.0

2 files

6.6.5

2 files

6.6.4

2 files

6.6.3

2 files

6.6.2

2 files

6.6.1

2 files

6.6.0

2 files

6.5.0

2 files

6.4.0

2 files

6.3.0

2 files

6.2.0

2 files

6.1.2

2 files

6.1.1

2 files

6.1.0

2 files

6.0.0

2 files

5.7.0

2 files

5.6.1

2 files

5.6.0

2 files

5.5.2

2 files

5.5.1

2 files

5.5.0

2 files

5.4.0

2 files

5.3.1

2 files

5.3.0

2 files

5.2.0

2 files

5.1.2

2 files

5.1.1

2 files

5.1.0

2 files

5.0.1

2 files

5.0.0

2 files

4.2.1

2 files

4.2.0

2 files

4.1.0

2 files

4.0.0

2 files

3.7.0

2 files

3.6.1

2 files

3.6.0

2 files

3.5.0

2 files

3.4.0

2 files

3.3.0

2 files

3.2.0

2 files

3.1.1

2 files

3.1.0

2 files

3.0.0

2 files

2.1.0

2 files

2.0.2

2 files

2.0.1

2 files

2.0.0

2 files

1.5.0

2 files

1.4.0

2 files

1.3.3

2 files

1.3.2

2 files

1.3.1

2 files

1.3.0

2 files

1.2.0

2 files

1.1.2

2 files

1.1.1

2 files

1.1.0

2 files

1.0.0

2 files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page