Uploaded image for project: 'Cluster Observability Operator'
  1. Cluster Observability Operator
  2. COO-481

Implement authn/authz for COO web server

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Major Major
    • 1.0.0
    • None
    • None
    • None
    • MON Sprint 261
    • None

      We need a switch depending on upstream vs. downstream

      • Vanilla Kubernetes (Kind): not required
      • OpenShift: required

       

      Ideally for OCP, we want to rely on the TLS client certificates used by the in-cluster Prometheus (we could possibly use https://pkg.go.dev/k8s.io/apiserver@v0.31.1/pkg/server/dynamiccertificates#NewDynamicServingCertificateController to load CA, cert and key from the API).

              spasquie@redhat.com Simon Pasquier
              spasquie@redhat.com Simon Pasquier
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: