apple / apple/foundationdb

Can network-based security tool (e.g., odo) be used as Access Control Layer for FDB?

Open
#2,395 1 comment 0 reactions 0 assignees View on GitHub
Dominant language
C++
Stars
16.7k
Forks
1.6k
Avg merge
1d 20h
Merged PRs (30d)
126

Description

I met in KubeCon'2019 a startup named `odo` (https://odo.io/database-access/) which provides the user-based fine-granularity access control to database services. They demonstrated with postgreSQL that they can control DB users’ access (like edit or view) without changing database.

It can be an interesting solution for Access Control Layer (ACL) to control which user can access which keyspace in FDB.

If anyone wants ACL, the technique may be helpful.

Contributor guide

Open the contributing guide

Research direction

The issue describes odo's PostgreSQL access-control demonstration and asks whether it could control FoundationDB keyspaces. No files, tests, or entry points are named, so define the scope and implementation location before work can begin.

Written by the indexing model from the issue text.

Assessment

Tech stack
postgresql
Domain
databases, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
20/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.