flux2 icon indicating copy to clipboard operation
flux2 copied to clipboard

[RFC] Passwordless authentication for Git repositories

Open aryan9600 opened this issue 1 year ago • 5 comments

This RFC proposes adding support for passwordless authentication for Git repositories on Git SaaS platforms and cloud providers using methods like OIDC, OAuth2 and IAM.

aryan9600 avatar Jul 31 '23 18:07 aryan9600

I like the general approach here. What I missed while reading the RFC is the handling of token lifetime. How is an expired token refreshed?

@makkes see the "Caching" section at the bottom. do you feel like that section does not contain enough info about handling of expiring tokens? what more would you like to see in the section?

aryan9600 avatar Aug 01 '23 07:08 aryan9600

Is this still being planned? I'm very interested in being able to use managed identities for git instead of a manual step right now of adding a secret to my clusters.

Poltergeisen avatar Sep 18 '23 19:09 Poltergeisen

would also be interested in using Azure DevOps managed identities/service principals

schdief avatar Feb 07 '24 13:02 schdief

Would any of the maintainers sponsor this RFC? I would like to start making progress on this.

bavneetsingh16 avatar Apr 24 '24 23:04 bavneetsingh16

Would any of the maintainers sponsor this RFC? I would like to start making progress on this.

Thanks for stepping up @bavneetsingh16. I volunteer to sponsor this RFC.

souleb avatar Apr 25 '24 06:04 souleb

Superseded by #4806

stefanprodan avatar May 22 '24 08:05 stefanprodan

Superseded by #4806

Is there another PR in flight for this or will it be implemented later then?

ageisen2000 avatar May 22 '24 13:05 ageisen2000

Is there another PR in flight for this or will it be implemented later then?

First the RFC has to be agreed on and merged, then we can talk about implementations. I've added the RFC to the roadmap but it all depends on the availability of those involved.

stefanprodan avatar May 22 '24 13:05 stefanprodan