Back to mods
Server Authentication project artwork

Vintage Story Mod DB · Vintage Story mod

Server Authentication

Server Auth Increase the security for your server by adding a new account register and login on player connections, totally server side, Version to choose Game Version Mod Version 1.x.x RSA Encryption (Both) 1.x.x-rc Simple (Server Only) warning In the

Choose a version Pick your version below, then grab the matching file.

Quick answer

Which Server Authentication release should I use?

Updated 27 days ago
Latest stable file 1.0.10
Game version 1.22.3
Loader Built-in Vintage Story mod system

Server Authentication 1.0.10 targets 1.22.3. Do not install it on the client. It must be installed on the dedicated server. No extra mods listed for this file.

Where it goes

Is Server Authentication required on the client, server, or both?

Do not install it on the client. It must be installed on the dedicated server.

Client Not supported
Dedicated server Required
Loader for this release Built-in Vintage Story mod system
Required install it here Optional supported, not mandatory Not supported do not install here Source doesn’t say do not assume

This Vintage Story file is marked server-only.

What else does Server Authentication 1.0.10 need?

1.0.10. Change the file and its required mods may change too.

No extra mods listed for this file

This file does not list any required mods. Do not add a library just because a different file uses it.

This file does not list any required or optional mods.

Before you install it

Add Server Authentication without breaking your instance.

Built for Server Authentication 1.0.10. Pick another file and the loader, install side or required mods may change.

  1. 01

    Stick to this file

    Use 1.0.10. It targets 1.22.3; another release may have different loader, side or dependency requirements.

  2. 02

    Bring the mods it needs

    This file does not list any required mods. Do not add a library just because a different file uses it.

  3. 03

    Put it on the correct side

    Do not install it on the client. It must be installed on the dedicated server.

  4. 04

    Pick the file you checked

    Use the “Get this file” button beside 1.0.10. It opens that exact file at the source.

About this project

What does Server Authentication add?

Server Auth

Increase the security for your server by adding a new account register and login on player connections, totally server side,

Version to choose

Game Version Mod Version
1.x.x RSA Encryption (Both)
1.x.x-rc Simple (Server Only)

warning

In the last version the configuration uidAuthentication is removed, if this is used as false in previous versions, updating the mod will make all players need to register again!!

Features:

  • Register account system ex: /register 123
  • Login account system ex: /login 123
  • Change password system ex: /changepassword 321
  • Admin change password system ex: /forcechangepassword test 321
  • Configuration files
  • RSA Encryption for passwords
  • Passwords saved is hashed using SHA256

Player unlogged cannot:

  • Drop items
  • Execute commands
  • Break blocks
  • Get dropped items
  • Use inventory
  • Deal damage
  • Receive damage
  • Lose saturation
  • Move

Observations

Players not registered will not count as unlogged player. (Configurable)

Players has 20 seconds to login, if player not logged will be automatically disconnected from the server. (Configurable)

Too many wrongs password will kick user and ban for some seconds. (Configurable)

Entering too many times in server and not logging will ban the user for some seconds. (Configurable)

When a player enters in the server all the inventory is saved locally and the player inventory is clear, so the unlogged players will not have access to the inventory, when the player successfully login in, the inventory is restored.

Unfurtunally you can view the players passwords in servers log if you have acess to it, this is because the native code logs all commands from players, you know how to disable it? feel free to pull request.

The players password is saved based in the player UID (you can force to use player name instead but this is UNSECURE), if the player changes the name the password for login will be the same.

Changing authentication to uid and player name will cause incosistences with players needing register again, be carefull changing it in mid game

Considerations

This mod change a lot of native code, and can break easily throught updates, please make a backup in your world before adding it.

Performance can be a impacted on the server, because of authentication verification.

To much unlogged players can cause performances leaks because of forcing stop moviment.

About Server Auth

Server Auth is open source project and can easily be accessed on the github, all contents from this mod is completly free.

If you want to contribute into the project you can access the project github and make your pull request.

You are free to fork the project and make your own version of Server Auth, as long the name is changed

Project description from Vintage Story Mod DB.

Pick your setup

Server Authentication releases for each Vintage Story version.

Choose the version and loader you play, then open the matching release.

7 available setups

Check the dependencies, then try the file in a copied instance before changing a world you care about.

Recent files

Server Authentication versions and loaders

11 of 11 releases match

Looking for an older file? The official Vintage Story Mod DB project page is in Resources.