coldclimate,
@coldclimate@hachyderm.io avatar

I've sent a little time this morning searching for articles around "patterns for service to service authentication" and found a couple of bits.

I'm trying to document/evangelise that evolution of patterns is OK (in fact preferable) to long cycle large shifts.
Anyone got any go to posts about intraService authN/authZ patterns ? I hate to say . ps

mattb,
@mattb@hachyderm.io avatar
anderseknert,
@anderseknert@hachyderm.io avatar

@mattb @coldclimate SPIFFE / SPIRE?

coldclimate,
@coldclimate@hachyderm.io avatar

@anderseknert @mattb certainly on the list at the far right of the evolution scale.

anderseknert,
@anderseknert@hachyderm.io avatar

@coldclimate @mattb Yeah, it's certainly not a quick fix, but well worth it at scale. If you have an OAuth2 token server somewhere in you environment, having clients obtain access tokens from that for auth would be another option.

coldclimate,
@coldclimate@hachyderm.io avatar

@mattb I can help reading that as "doesn't this enjit know what he's doing already?!" but I guess that's not what you meant 😄

mattb,
@mattb@hachyderm.io avatar

@coldclimate The opposite 😆 It means: this sounds interesting and I will be watching the replies!

  • All
  • Subscribed
  • Moderated
  • Favorites
  • devops
  • GTA5RPClips
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • osvaldo12
  • ethstaker
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • ngwrru68w68
  • kavyap
  • tester
  • cisconetworking
  • JUstTest
  • InstantRegret
  • khanakhh
  • cubers
  • everett
  • Durango
  • tacticalgear
  • Leos
  • modclub
  • normalnudes
  • megavids
  • anitta
  • provamag3
  • lostlight
  • All magazines