[
https://issues.apache.org/jira/browse/CASSSIDECAR-161?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Francisco Guerrero updated CASSSIDECAR-161:
-------------------------------------------
Fix Version/s: 1.0
Source Control Link:
https://github.com/apache/cassandra-sidecar/commit/5a19e3448038fa4b2e9f497ab94dbbe911f44c29
Resolution: Fixed
Status: Resolved (was: Ready to Commit)
> Add RBAC Authorization support in Sidecar
> -----------------------------------------
>
> Key: CASSSIDECAR-161
> URL: https://issues.apache.org/jira/browse/CASSSIDECAR-161
> Project: Sidecar for Apache Cassandra
> Issue Type: New Feature
> Components: Configuration
> Reporter: Saranya Krishnakumar
> Assignee: Saranya Krishnakumar
> Priority: Normal
> Fix For: 1.0
>
> Time Spent: 18h 50m
> Remaining Estimate: 0h
>
> Sidecar has authentication support, we should also add authorization support
> for enhanced security. This JIRA proposes adding RBAC (role based access
> control) authorization in Sidecar. AuthorizationHandler is to be chained
> after the ChainAuthHandler. It will check for permissions of authenticated
> user. For role based access control, Sidecar should honor permissions stored
> in Cassandra. For custom endpoint level permissions that are not found in
> Cassandra, Sidecar should fall back to referring permissions stored in its
> configuration.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]