From 11b0233146bebc7df42b5dc27b3f39656a4f7cf5 Mon Sep 17 00:00:00 2001 From: mo khan Date: Thu, 27 Feb 2025 16:29:09 -0700 Subject: docs: fix up the readme --- README.md | 22 ++++++---------------- 1 file changed, 6 insertions(+), 16 deletions(-) (limited to 'README.md') diff --git a/README.md b/README.md index 43d3390..f099eab 100644 --- a/README.md +++ b/README.md @@ -1,23 +1,13 @@ # Spike 1. Twirp + GRPC (authz) - 1. idp (headless) - * provide a thrift/grpc endpoint that is the equivalent of `Ability.allowed?(subject, permission, resource)` - 1. gitlab + * idp (headless): provide a thrift/grpc endpoint that is the equivalent of `Ability.allowed?(subject, permission, resource)` + * gitlab 2. OpenID Connect (authn) + OAuth (authz) - * two services - 1. idp (with login pages) - * user - * member - * `member_role` - 1. gitlab - * groups - * project - * OpenID transaction to provide authn information to `gitlab-org/gitlab` - * OAuth token introspection endpoint to provide token permissions -4. OPA agent style side car using declarative policy -3. API Gateway - * using golang reverse proxy and one of the new policy dsl's + 1. idp (with login pages) + 1. gitlab +3. API Gateway: using golang reverse proxy and one of the new policy dsl's +4. OPA agent style side car process using declarative policy ## Identity Provider (SAML IdP) -- cgit v1.2.3