OIDC admin login + CSRF for the gateway
Nobody has claimed this yet.
Assessment
- Difficulty
- 5/5
- Estimated time
- Over a week
- Newbie friendliness
- 35/100
- Issue type
- Feature
- Clarity
- Mostly clear
- Activity status
- Quiet
- Tech stack
- go
- Domain
- authentication, backend, security
Research direction
Start at the gateway admin authentication entry points that currently handle bootstrap tokens and bearer access. Trace how admin POSTs are routed, then determine the scope of OIDC/OAuth provider support, cookie sessions, and CSRF enforcement; done means GitHub, Google, and generic login flows work with secure httpOnly sessions and protected admin POSTs.
Written by the indexing model from the issue text.
Description
Gateway admin is bootstrap-token + bearer only. Add OIDC/OAuth login (GitHub/Google/generic), httpOnly secure cookie session, CSRF on admin POSTs. Round 21 auth-first.
- Dominant language
- Go
- Stars
- 0
- Forks
- 0
- PR merge metrics
- No merged PRs in 30d
Getting set up
- Ships a Dockerfile or Docker Compose file
- No pull request template
- Read the contributing guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from moul/workgraph
-
integration rfc
Difficulty 5/5 Over a week Newbie friendliness 25/100
-
integration rfc
Difficulty 5/5 Over a week Newbie friendliness 25/100
-
integration rfc
Difficulty 5/5 Over a week Newbie friendliness 20/100
-
integration rfc
Difficulty 5/5 Over a week Newbie friendliness 25/100
-
roadmap
Difficulty 2/5 1-3 hours Newbie friendliness 52/100
Similar issues
-
bug triage
Difficulty 2/5 1-3 hours Newbie friendliness 62/100
FairwindsOps/nova#484 ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 68/100
Maintainers usually reply within 1 day
-
automated-analysis code-quality cookie
Difficulty 2/5 1-3 hours Newbie friendliness 66/100
github/gh-aw#67517 · 3 comments ·
Maintainers usually reply within 1 day
-
[otelcol] print-config help text still requires the removed otelcol.printInitialConfig feature gatePossibly taken @girishkvs claimed this today. Open
Difficulty 1/5 Under an hour Newbie friendliness 88/100
open-telemetry/opentelemetry-collector#16143 · 1 comment ·
Maintainers usually reply within 1 day
-
bug good first issue load-balancing
Difficulty 2/5 1-3 hours Newbie friendliness 82/100
ktrubilo9/edge-proxy#53 ·