[
https://issues.apache.org/jira/browse/HDDS-13323?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Ren Koike updated HDDS-13323:
-----------------------------
Description: With Amazon AWS, there is a central service called STS which
has the ability to generate short-lived token to access some resources
([https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp.html)|https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp.html].
STS service that can be used by customers to use REST APIs to retrieveAn admin
or a user who is granted to execute assume-role operation, can issue such a
token defined in a role. (was: With Amazon AWS, there is a central service
which has the ability to generate [short-lived token to access some
resources.|[https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp.html]|https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp.html].].
An admin or a user who is granted to practice assume-role operation, can issue
a temporary token to access some resources in Ozone for a short time defined in
a role. )
> STS - temporary security token service
> --------------------------------------
>
> Key: HDDS-13323
> URL: https://issues.apache.org/jira/browse/HDDS-13323
> Project: Apache Ozone
> Issue Type: New Feature
> Reporter: Ren Koike
> Assignee: Ren Koike
> Priority: Major
>
> With Amazon AWS, there is a central service called STS which has the ability
> to generate short-lived token to access some resources
> ([https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp.html)|https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp.html].
> STS service that can be used by customers to use REST APIs to retrieveAn
> admin or a user who is granted to execute assume-role operation, can issue
> such a token defined in a role.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]