BCDevOps / developer-experience

This repository is used to track all work for the BCGov Platform Services Team (This includes work for: 1. Platform Experience, 2. Developer Experience 3. Platform Operations/OCP 3)
Apache License 2.0
8 stars 17 forks source link

OCP Access requirements gathering and RH engagement #1666

Closed NickCorcoran closed 3 years ago

NickCorcoran commented 3 years ago
NickCorcoran commented 3 years ago
NickCorcoran commented 3 years ago

Requirements for User provisioning for OpenShift (AG):

Could include inventory of user access management?

Could have an user search capability?

Could we make some automated solution?

Could follow core Government policy?

Could include history of user /User provisioning

NickCorcoran commented 3 years ago

Related tickets: Custom roles

michaelshire commented 3 years ago

Initial meeting discussion notes

Goals:

  1. Reducing AG's toil managing rolebindings

Additional questions, I may have missed it in Ryan's presentation on October 20th,:

  1. Does AG use ServiceNow or some other ticketing solution?
  2. Does AG on board developers into an IDentity Provider like Active Directory, LDAP, Azure AD, Google IAM, etc?

Options to consider/discuss:

NickCorcoran commented 3 years ago

Tremolo security recommended by RedHat as a tool other orgs use for user access management: https://app.zenhub.com/workspaces/platform-experience-5bb7c5ab4b5806bc2beb9d15/issues/bcdevops/developer-experience/1704