OpenShift Container Platform 4.13 认证和授权OPERATOR 19.2. 使用 MINT 模式 19.3. 使用 PASSTHROUGH 模式 19.4. 使用手动模式 19.5. 在 AMAZON WEB SERVICES SECURITY TOKEN SERVICE 中使用手动模式 19.6. 在 GCP WORKLOAD IDENTITY 中使用手动模式 132 134 134 138 150 156 156 162 167 Platform 集群。 授 授权 权 授权决定识别的用户是否有权限来执行所请求的操作。 bearer 令牌 令牌 bearer 令牌用于通过标头 Authorization: Bearer <token> 向 API 进行身份验证。 Cloud Credential Operator Cloud Credential Operator(CCO) 将云供应商凭证作为自定义资源定义 (CRD) 进行管理。/oauth/token 端点,从 OpenShift Container Platform OAuth 服务器获取。 作为 Authorization: Bearer… 标头形式发送。 以 base64url.bearer.authorization.k8s.io. token> 形式,作为 websocket 请求的 websocket 0 码力 | 201 页 | 2.74 MB | 1 年前3
Dapr july 2020 security audit reportDAP-01-010 WP2: Invocation of out-of-scope topic handlers of PubSub (Info) DAP-01-012 WP2: Missing authentication from Dapr API to application (Medium) Miscellaneous Issues DAP-01-001 WP1: Sidecar allows MDNS insights into State Encapsulation, MitM attacks on Service Invocation, DoS attack mitigations, API Authentication and Pub/Sub scoping. Since Dapr is available as open source software, the adopted methodology implementations, secrets storage features, network filtering features, pub/sub mechanism implementations, authentication features and throttling. ◦ Sources ▪ Repository: • https://github.com/dapr/dapr.git ▪ Commit0 码力 | 19 页 | 267.84 KB | 1 年前3
CIS 1.6 Benchmark - Self-Assessment Guide - Rancher v2.5.4(Automated) 1.2.2 Ensure that the --basic-auth-file argument is not set (Automated) 1.2.3 Ensure that the --token-auth-file parameter is not set (Automated) 1.2.4 Ensure that the --kubelet-https argument is set to unique Certificate Authority is used for etcd (Automated) 3.1 Authentication and Authorization 3.1.1 Client certificate authentication should not be used for users (Manual) 3.2 Logging 3.2.1 Ensure rnetes/ssl/kube- node.pem --service-account-key-file=/etc/kubernetes/ssl/kube- service-account-token-key.pem --insecure-port=0 -- requestheader-group-headers=X-Remote-Group --secure-port=6443 --enable-admission-0 码力 | 132 页 | 1.12 MB | 1 年前3
Apache Kyuubi 1.9.0-SNAPSHOT Documentationmaintenance downtime, optimize workloads with a clear view of what end users are doing, ensure authentication, authorization, and auditing for both cluster and data security, and so forth. In general, the the end-to-end multi-tenancy. On the control plane, the Kyuubi server provides a centralized authentication layer to reduce the risk of data and resource breaches. It supports various protocols, such as Configurations Logging Other Configurations User Defaults Deploying Kyuubi Basics Engines Security Authentication Authorization Kinit Auxiliary Service Hadoop Credentials Manager Monitoring 1. Monitoring Kyuubi0 码力 | 405 页 | 4.96 MB | 1 年前3
Apache Kyuubi 1.8.1 Documentationmaintenance downtime, optimize workloads with a clear view of what end users are doing, ensure authentication, authorization, and auditing for both cluster and data security, and so forth. In general, the the end-to-end multi-tenancy. On the control plane, the Kyuubi server provides a centralized authentication layer to reduce the risk of data and resource breaches. It supports various protocols, such as Configurations Logging Other Configurations User Defaults Deploying Kyuubi Basics Engines Security Authentication Authorization Kinit Auxiliary Service Hadoop Credentials Manager Monitoring 1. Monitoring Kyuubi0 码力 | 405 页 | 5.28 MB | 1 年前3
Apache Kyuubi 1.7.1-rc0 Documentationmaintenance downtime, optimize workloads with a clear view of what end users are doing, ensure authentication, authorization, and auditing for both cluster and data security, and so forth. In general, the the end-to-end multi-tenancy. On the control plane, the Kyuubi server provides a centralized authentication layer to reduce the risk of data and resource breaches. It supports various protocols, such as Helm Getting Started with Hive JDBC Deploying Kyuubi Basics Configurations Engines Security Authentication Authorization Kinit Auxiliary Service Hadoop Credentials Manager Monitoring 1. Monitoring Kyuubi0 码力 | 401 页 | 5.25 MB | 1 年前3
Apache Kyuubi 1.7.0-rc0 Documentationmaintenance downtime, optimize workloads with a clear view of what end users are doing, ensure authentication, authorization, and auditing for both cluster and data security, and so forth. In general, the the end-to-end multi-tenancy. On the control plane, the Kyuubi server provides a centralized authentication layer to reduce the risk of data and resource breaches. It supports various protocols, such as Kubernetes Getting Started With Hive JDBC Deploying Kyuubi Basics Configurations Engines Security Authentication Authorization Kinit Auxiliary Service Hadoop Credentials Manager Monitoring 1. Monitoring Kyuubi0 码力 | 404 页 | 5.25 MB | 1 年前3
Apache Kyuubi 1.7.0 Documentationmaintenance downtime, optimize workloads with a clear view of what end users are doing, ensure authentication, authorization, and auditing for both cluster and data security, and so forth. In general, the the end-to-end multi-tenancy. On the control plane, the Kyuubi server provides a centralized authentication layer to reduce the risk of data and resource breaches. It supports various protocols, such as Kubernetes Getting Started With Hive JDBC Deploying Kyuubi Basics Configurations Engines Security Authentication Authorization Kinit Auxiliary Service Hadoop Credentials Manager Monitoring 1. Monitoring Kyuubi0 码力 | 400 页 | 5.25 MB | 1 年前3
Apache Kyuubi 1.7.0-rc1 Documentationmaintenance downtime, optimize workloads with a clear view of what end users are doing, ensure authentication, authorization, and auditing for both cluster and data security, and so forth. In general, the the end-to-end multi-tenancy. On the control plane, the Kyuubi server provides a centralized authentication layer to reduce the risk of data and resource breaches. It supports various protocols, such as Kubernetes Getting Started With Hive JDBC Deploying Kyuubi Basics Configurations Engines Security Authentication Authorization Kinit Auxiliary Service Hadoop Credentials Manager Monitoring 1. Monitoring Kyuubi0 码力 | 400 页 | 5.25 MB | 1 年前3
Apache Kyuubi 1.5.1 Documentationhtml#running-the- thrift-jdbcodbc-server] already exists. 1. Supports multi-client concurrency and authentication 2. Supports one Spark application per account(SPA). 3. Supports QUEUE/NAMESPACE Access Control Optimal execution plan: fully supports Spark SQL Catalyst Optimizer, Authentication & Authorization With strong authentication and fine-grained column/row level authorization, Kyuubi keeps your system Started with Kyuubi and Cloudera Hue Deploying Kyuubi Basics Configurations Engines Security 1. Authentication 2. Kinit Auxiliary Service 3. Hadoop Credentials Manager 4. ACL Management Guide Client Documentation0 码力 | 267 页 | 5.80 MB | 1 年前3
共 310 条
- 1
- 2
- 3
- 4
- 5
- 6
- 31













