Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[FEAT] - PoC for Structured Authentication & remote cluster access #807

Closed
4 tasks done
IvoGoman opened this issue Dec 17, 2024 · 1 comment
Closed
4 tasks done
Assignees
Labels
feature ready Backlog Item is ready for Sprint Backlog

Comments

@IvoGoman
Copy link
Contributor

IvoGoman commented Dec 17, 2024

Priority

Medium

User Story

No response

Description

This PoC should be used to proof that we can use StructuredAuthentication on a remote cluster to add the Central Greenhouse cluster as a provider for OIDC tokens.

Acceptance Criteria

  • Proof this works to access a remote cluster
  • Writeup of necessary steps to configure this on both ends
  • Verify that this cannot be misused ( e.g. access cluster of another Org )
  • Check if Central Cluster Auth(Dex) can be replaced by StructuredAuth + ClaimMappings

Reference Issues

#806

@github-project-automation github-project-automation bot moved this to Sprint Backlog in Greenhouse Core Roadmap Dec 17, 2024
@IvoGoman IvoGoman added the ready Backlog Item is ready for Sprint Backlog label Dec 17, 2024
@uwe-mayer uwe-mayer moved this from Sprint Backlog to In progress in Greenhouse Core Roadmap Jan 21, 2025
@IvoGoman
Copy link
Contributor Author

IvoGoman commented Feb 4, 2025

StructuredAuth needs to be provided in a ConfigMap in the garden cluster and cannot be changed inside the Shoot Cluster on the fly.

@IvoGoman IvoGoman moved this from In progress to Done in Greenhouse Core Roadmap Feb 4, 2025
@IvoGoman IvoGoman closed this as completed by moving to Done in Greenhouse Core Roadmap Feb 4, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature ready Backlog Item is ready for Sprint Backlog
Projects
Status: Done
Development

No branches or pull requests

2 participants