Skip to content

Add Authentication configuration option for all Registry endpoints. #955

@rohit-joy

Description

@rohit-joy

This is essentially to follow in the same lines as the integration with Keycloak that was done for service accounts and extend it to all endpoints including GET.

If this new environment variable AUTHENTICATION_REQUIRED is set to true, then Authentication is required to access even the GET endpoints by users or service accounts. Anonymous access will be forbidden.

In lieu of the OIDC auth, the legacy authorization token should be used when AUTHENTICATION_REQUIRED is true.

When AUTHENTICATION_REQUIRED is false, the behavior would be the same as it is today where anonymous access to GET endpoints are allowed.

If you have suggestions or concerns, please let me know.

Metadata

Metadata

Type

No type

Projects

Status

Passed QA

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions