agent-substrate / agent-substrate/substrate

Design: Authorization in Substrate

未關閉
#936 2 則留言 0 個 reaction 已指派 1 人 已被 @SHRUTI6991 認領 在 GitHub 檢視
area/security kind/feature
主要語言
Go
星號
1.8k
分支
316
平均合併
2 天 43 分鐘
30 天內合併 PR
287

描述

Provide an authorization model for Substrate.

**Current Choices**

1. **OpenFGA** - Relationship based auth engine that does graph traversals at runtime to find our permissions for subjects.
2. **CloudIAM** - Provides system defined list of roles at specific scopes like cluster, atespace or instance.
3. **K8 RBAC** - Provide K8 style RBAC with `Role` + `RoleBinding`.

**Design proposal**

https://docs.google.com/document/d/1LYjBlXWLJ18beLDw74Rs_Tq38wFkCTeau4_7_98Op3c/edit?resourcekey=0-zY5W-u0AlAT_GIU6i394CQ&tab=t.6uuc4ftvayew

貢獻指南

開啟貢獻指南

評估

這個 Issue 還沒有評估資料。

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。