Skip to content
This repository has been archived by the owner on Apr 15, 2024. It is now read-only.

ISSUE-2354: BP-41 Certificate role based authorization for Bookkeeper #215

Open
sijie opened this issue Jun 4, 2020 · 0 comments
Open

Comments

@sijie
Copy link
Member

sijie commented Jun 4, 2020

Original Issue: apache#2354


This is the master ticket for tracking BP-41.

Even with TLS/mTLS authentication, any other service with rootCA is able to access Bookkeeper which is unacceptable as Bookkeeper is the source or truth.

This feature allows a predefined set of roles to be 'whitelisted' to be able
to access bookkeeper based on their client certificates.
It also introduces a structure for these roles to adhere to in order to scale.

Proposal PR - Link

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

2 participants