victorious-eye-56567
03/28/2023, 1:54 PMaverage-policeman-69189
03/28/2023, 3:10 PMremote_json
authorizer in oathkeeper to call the check API in Keto, the configuration can be dynamic from the URL match group (regex), but you still have a single "check" call. If you need more complex query two solution:
1. Maybe your Keto relation tuple did not really match your authorization query, I think it's always better to be able to check auth in a single or at least a minimum number of check.
2. You need a slim micro service to handle the check logic if complex queries is neededvictorious-eye-56567
03/28/2023, 4:35 PMOry is the largest open source community in the world for cloud software application security. We maintain advanced open source security software solving authentication, authorization, access control, application network security, and delegation. Ory implements a variety of industry and best-practice standards including OAuth 2.0 / OAuth 2.1, OpenID Connect, Zero Trust Networking, Google Zanzibar Policy Framework, FIDO2 U2F, WebAuthn, TOTP, and more.
Powered by