seknox / trasa

Zero Trust Service Access
https://www.trasa.io
Mozilla Public License 2.0
382 stars 71 forks source link

[FEATURE] Update dynamic access mapping to support more granular UIDP, group and policiy based assignment #175

Closed flyinghermit closed 3 years ago

flyinghermit commented 3 years ago

Describe the feature:

Current dynamic access mapping only supports user groups and policy. Update it to support uIDP and more granular policy and privilege assignment. This should also satisfy the case when administrator does not want to import users from the identity provider (as described in #162) but still wants to allow controlled dynamic access.

Describe why this feature is needed: This will enable provisioning dymanic access per IDP, per group, per policy, or all combination combined.

Scope of the feature: