gravitino icon indicating copy to clipboard operation
gravitino copied to clipboard

[EPIC] Support credential vending in Gravitino

Open jerryshao opened this issue 1 year ago • 2 comments

Describe the proposal

As a centralized service, Gravitino should provide a mechanism to let third-party applications/service integrate with it to get temporary access to the underlying services, like S3, HDFS, HMS, etc on behalf of their users. the credential vending mechanism is heavily adopted in the cloud service. So Gravitino should provide a similar mehanism.

Task list

Tasks will be broken down later.

jerryshao avatar Aug 06 '24 10:08 jerryshao

This is the Proposal of the secret management system, which should be related to credentials vending

https://docs.google.com/document/d/1CUUtUXJHU89zbaOUkQRMVTfbAS5qlg_xiz5y6kHd37s/edit

lw-yang avatar Aug 09 '24 10:08 lw-yang

based on the design of @lw-yang , proposed a new design https://docs.google.com/document/d/1fovK0ylSmI45ynrCPcnRZqzyPDn7DRNb_ExdbjVPq0k/edit

FANNG1 avatar Sep 05 '24 08:09 FANNG1