Skip to content

Conversation

@wattli
Copy link
Contributor

@wattli wattli commented May 24, 2017

Add future work section to address potential auth concerns.

@istio-testing
Copy link
Contributor

Jenkins job istio.github.io/presubmit passed


* Fine-grained authorization and auditing

* Key and certificate rotation and revocation
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Isn't this already there?

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

removed


* Fine-grained authorization and auditing

* Key and certificate rotation and revocation

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

remove this one, since key rotation is already supported, and we may not need revocation with short lived cert

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

done.

* None-http traffic (MySql, Redis, etc.) support

* Auth information propagation from Envoy to the service
([issue](https://github.com/lyft/envoy/issues/794))

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

remove this line too. we need a design for that on authority delegation as well


* Inter-cluster service-to-service authentication

* End-user to service authentication

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

End-user to service authentication using JWT/OAuth2/OpenID_Connect

Copy link

@wenchenglu wenchenglu left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

remove

@lookuptable
Copy link
Member

Also can you edit the title of this PR to make it more informational?

@istio-testing
Copy link
Contributor

Jenkins job istio.github.io/presubmit passed

@wattli wattli changed the title Future Add future work section to address potential auth concerns. May 24, 2017
@wattli
Copy link
Contributor Author

wattli commented May 24, 2017

@lookuptable , done

@istio-testing
Copy link
Contributor

Jenkins job istio.github.io/presubmit passed

@istio-testing
Copy link
Contributor

Jenkins job istio.github.io/presubmit passed

@istio-testing
Copy link
Contributor

Jenkins job istio.github.io/presubmit passed

@wattli wattli merged commit c497166 into istio:master May 24, 2017
@wattli wattli deleted the future branch May 24, 2017 21:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

6 participants