vmware / vic

vSphere Integrated Containers Engine is a container runtime for vSphere.
http://vmware.github.io/vic
Other
640 stars 182 forks source link

Identity Management for VIC product, design #3899

Open lcastellano opened 7 years ago

lcastellano commented 7 years ago

User Statement: When a customer installs the VIC product it has access to 3 different components: VIC Engine, Harbor and Admiral. As of today Admiral and Harbor rely on different systems for Identity/User Management while VIC Engine relies on Client TLS Certificates. The goal of this Epic is to present a coherent, unified Identity/User Management experience in the VIC product.

Details: In order to provide this capability a common Identity/User Management infrastructure should be designed. VMWare has an Open Source product (called: Lightwave) which can be used as the foundation of the Identity/User Management infrastructure. The first part of this Epic consists in researching existing Identity/User Management in Harbor and Admiral and describe a strategy for integration with LW within the VIC product. Concurrently we need to identify the work necessary to install and configure LW as part of the VIC-OVA. A longer term goal is to provide a single Identity/User infrastructure story for Harbor, Admiral and VIC Engine.

Acceptance Criteria: This Epic should produce a design document describing the current state of the different components. An additional design documents containing the integration strategy for Admiral/Harbor and LW within the VIC product, this document may also contain a set of "user stories" and the desired behavior. Addition of LW to the base VIC-OVA, this may include a set of scripts to add/configure LW. Finally an overall design document outlining the longer term Identity/User Management strategy including VIC engine.

mhagen-vmware commented 7 years ago

@lcastellano Nice looking story, really good job. I moved this down to a medium priority - in general, only critical customer issues or blocking CI bugs should be high. Feature work and less critical bugs that we intend to finish in the current release should be medium. Thanks!

mhagen-vmware commented 7 years ago

No assignees in the backlog, we self-assign during sprint planning.