summaryrefslogtreecommitdiff
path: root/pkg/authz/server.go
diff options
context:
space:
mode:
authormo khan <mo@mokhan.ca>2025-05-23 14:54:24 -0600
committermo khan <mo@mokhan.ca>2025-05-23 14:54:24 -0600
commit3d6cdf0b3d6fa23509208e2355a7b7d26400a8ea (patch)
tree039bdf57b99061844aeb0fe55ad0bc1c864166af /pkg/authz/server.go
parent0ba49bfbde242920d8675a193d7af89420456fc0 (diff)
parent4beee46dc6c7642316e118a4d3aa51e4b407256e (diff)
Merge branch 'envoy-jwt-authn' into 'main'
Add External Authorization Service with Envoy Integration See merge request gitlab-org/software-supply-chain-security/authorization/sparkled!9
Diffstat (limited to 'pkg/authz/server.go')
-rw-r--r--pkg/authz/server.go31
1 files changed, 31 insertions, 0 deletions
diff --git a/pkg/authz/server.go b/pkg/authz/server.go
new file mode 100644
index 0000000..49bcd3d
--- /dev/null
+++ b/pkg/authz/server.go
@@ -0,0 +1,31 @@
+package authz
+
+import (
+ "context"
+
+ auth "github.com/envoyproxy/go-control-plane/envoy/service/auth/v3"
+ "github.com/xlgmokha/x/pkg/log"
+ "github.com/xlgmokha/x/pkg/x"
+ "gitlab.com/gitlab-org/software-supply-chain-security/authorization/sparkled/pkg/pls"
+ "google.golang.org/grpc"
+ "google.golang.org/grpc/reflection"
+)
+
+type Server struct {
+ *grpc.Server
+}
+
+func New(ctx context.Context, options ...grpc.ServerOption) *Server {
+ logger := log.From(ctx)
+ server := grpc.NewServer(x.Prepend(
+ options,
+ grpc.UnaryInterceptor(pls.LogGRPC(logger)),
+ grpc.StreamInterceptor(pls.LogGRPCStream(logger)),
+ )...)
+ auth.RegisterAuthorizationServer(server, &CheckService{})
+ reflection.Register(server)
+
+ return &Server{
+ Server: server,
+ }
+}