apache / apache/airavata-custos
Add Client Secret Management and Rotation
Open
ssh-certificate
- Dominant language
- Go
- Stars
- 21
- Forks
- 39
- Avg merge
- 2d 18h
- Merged PRs (30d)
- 6
Description
Implement a subsystem to manage and rotate client secrets automatically.
Integrate with OpenBao or another key manager to issue temporary secrets for signer clients and support secret revocation.
Contributor guide
Research direction
The issue names no files, tests, or entry points. Start by mapping the existing signer-client authentication flow and deciding how OpenBao or another key manager fits it; done should include automatic temporary-secret issuance, rotation, and revocation, with the integration boundaries and requirements documented.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- go
- Domain
- authentication, authorization, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100