1,019 B
1,019 B
IROH Auth Presentation
- IROH Auth Presentation
- What is IROH Auth?
- So what is IROH Auth?
- History
- Internal User Structure
- Cisco specificity
- tags
- Cisco
IROH Auth Presentation
Yann Esposito <yaesposi@cisco.com>
What is IROH Auth?
This is a software subcomponent of IROH taking care of:
-
Authentication
- provide a user unique identifier
-
Authorization
- decide what user can or cannot do
- User Data Model
- Tenancy (Org) Management
- API Clients Management
So what is IROH Auth?
The sub-component of IROH taking care of:
- authentication (from user interaction provide a user id, unique identifier)
- authorizations (what can a user do)
-
internal user representation
- Org/Tenancy
- User
- OAuth2 Clients
History
- Login using AMP SAML (generate JWT)
- OAuth2 Provider (Grants)
- Login using OpenID Connect with TG (client of OpenID Connect)
- Users/Orgs in DB!!!
- Account Activation
- Become an OpenID Connect provider
- OIDC with SSE