Skip to content

Use immutable IDs for groups and users #771

Open
@ZPain8464

Description

@ZPain8464

The ask: Instruct users to build policies that use an entity's unique ID only (typically sub for user and id for groups). This will provide a standardized method that works with every IdP we support, but will force/urge users to rewrite policies that use name or group name claims to regulate access.

This issue is linked to this issue.

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions