versitygw icon indicating copy to clipboard operation
versitygw copied to clipboard

OIDC IAM Service

Open mjf-89 opened this issue 1 year ago • 4 comments

It would be nice to add support for OIDC authentication. However I wonder how this could be implemented using the IAM Service abstraction that you are currently implementing.

OIDC e.g. is supported by AWS and by minio by means of the Security Token Service (STS) API endpoints. Calling into those endpoints the user can exchange an OIDC token with a set of short-term credentials to access the s3 resources. Are you planning or are you open to the idea of implementing something similar?

mjf-89 avatar Dec 20 '23 09:12 mjf-89