Skip to content

Latest commit

 

History

History
38 lines (24 loc) · 517 Bytes

File metadata and controls

38 lines (24 loc) · 517 Bytes

Security Architecture

This document describes the security architecture of ReadyStackGo.

Topics

  • Initial Setup Security - Security during initial setup
  • Authentication (Local + OIDC)
  • Authorization (Roles)
  • JWT Tokens
  • TLS
  • Configuration Protection

Authentication

  • Local Admin (Wizard)
  • Later OIDC (Keycloak, ams.identity, etc.)

Roles

  • admin
  • operator

Roles control access to endpoints.


Tokens

JWT-based, with claims:

  • sub
  • role
  • exp