Persistent API keys
Nessuno ha ancora preso questa issue.
Valutazione
- Difficoltà
- 5/5
- Tempo stimato
- Più di una settimana
- Idoneità per principianti
- 25/100
- Tipo di issue
- Funzionalità
- Chiarezza
- Da chiarire
- Stato di attività
- Ferma
- Ambito
- api, authentication
Direzione di ricerca
Nell’issue non sono identificati file del repository, test o punti di ingresso; inizia dalla configurazione di autenticazione fastapi-users collegata nella descrizione e traccia il flusso di login JWT esistente. Definisci il modello delle chiavi persistenti, la revoca, la scadenza e gli scopes opzionali e il flusso di scambio, facendo funzionare il rinnovo dei JWT di breve durata sia per il login interattivo sia per quello non interattivo.
Scritto dal modello di indicizzazione a partire dal testo della issue.
Descrizione
At the moment, a user can login and get a JWT token. These tokens aren't stored in the database and have a baked-in expiry time. They're used for temporary sessions, typically by web browsers. This is fine and we'll definitely need this kind of tokens, but it's not designed to be used for automation tools that use the API continuously such as pipeline services.
In addition to the JWT, we should create another kind of tokens which we might call "API access keys". These would be stored in the database and could be revoked by the user. They may also have an expiry date and scopes to fine-tune the operations that can be performed with them. This is how most web APIs work, with persistent credentials for this kind of use-case. I don't think fastapi-users can support both, but it can support one or the other:
https://fastapi-users.github.io/fastapi-users/10.0/configuration/authentication/
In our particular case, I would like to suggest that we use the persistent API keys as a way to get a temporary JWT token. So a user can interactively login with a username / password interactive form or non-interactively by sending an access token. Then a short-lived JWT token is generated (say, valid for 1h) and when it expires a new one needs to be generated.
- Lingua principale
- Python
- Stelle
- 10
- Fork
- 21
- Merge medio
- 22m
- PR unite (30g)
- 1
Preparare l'ambiente
- Include un Dockerfile o un file Docker Compose
- Nessun modello di pull request
- Nessuna guida per i contributori
Come iniziare
- Leggi tutta la issue e poi la guida ai contributi del progetto.
- Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
- Fai un fork del repository e lavora su un branch.
- Apri una pull request che faccia riferimento al numero della issue.
Altre issue di kernelci/kernelci-api
-
Difficoltà 4/5 3-5 giorni Idoneità per principianti 45/100
kernelci/kernelci-api#706 ·
-
Components/Maestro/API/Local instance says GET /latest/ should return some JSON, but it doesn'tForse di nuovo libera Una pull request per questa issue è stata chiusa senza essere unita. Apertadocumentation
Difficoltà 3/5 1-2 giorni Idoneità per principianti 35/100
kernelci/kernelci-api#632 · 1 commento ·
-
Difficoltà 5/5 Più di una settimana Idoneità per principianti 20/100
kernelci/kernelci-api#629 ·
-
Difficoltà 4/5 3-5 giorni Idoneità per principianti 35/100
kernelci/kernelci-api#608 ·
-
Difficoltà 3/5 1-2 giorni Idoneità per principianti 35/100
kernelci/kernelci-api#597 · 2 commenti ·
Tutte le issue di kernelci/kernelci-api
Issue simili
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 82/100
RedHatQE/mtv-api-tests#721 ·
I maintainer di solito rispondono entro 1 giorno
-
Difficoltà 2/5 1-3 ore Idoneità per principianti 84/100
I maintainer di solito rispondono entro 1 giorno
-
Difficoltà 1/5 1-3 ore Idoneità per principianti 85/100
pytest-dev/pluggy#757 ·
I maintainer di solito rispondono entro 1 giorno
-
Difficoltà 1/5 1-3 ore Idoneità per principianti 85/100
NousResearch/hermes-agent#134960 ·
I maintainer di solito rispondono entro 1 giorno
-
HTML backend: `<br>` leaks the internal sentinel U+E000 into list items, headings and captionsForse già presa @morten-lagabote l’ha presa oggi. Aperta
Difficoltà 2/5 1-3 ore Idoneità per principianti 67/100
docling-project/docling#4671 ·
I maintainer di solito rispondono entro 1 giorno