Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Support for k8s TokenReview API #1181

Open
2 of 3 tasks
dadrus opened this issue Feb 8, 2024 · 0 comments
Open
2 of 3 tasks

Support for k8s TokenReview API #1181

dadrus opened this issue Feb 8, 2024 · 0 comments
Labels
feature Used for new features
Milestone

Comments

@dadrus
Copy link
Owner

dadrus commented Feb 8, 2024

Preflight checklist

Describe the background of your feature request

To allow the usage of k8s built-in authorization resources, there is a need to verify the ServiceAccount token preented in the corresponding request.

Describe your idea

Even that is possible by making use of the JWT authenticator, it would be much more convenient if there would be an authenticator, which would make use of the k8s TokenRequest API.

Are there any workarounds or alternatives?

As written above, one could theoretically use the available JWT authenticator for this purpose. It would however require a pretty complex configuration.

Version

1.13.0-alpha

Additional Context

This FR can be considered as a prerequisite for #1180

@dadrus dadrus added the feature Used for new features label Feb 8, 2024
@dadrus dadrus added this to the Future milestone Feb 8, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature Used for new features
Projects
None yet
Development

No branches or pull requests

1 participant