Dear flux-security Developers,
I am studying your flux-framework capability for suitability for our application ecosystem. Our ecosystem has Information Assurance (IA) requirements for GEOAxIS, OpenID, OAuth2, Kerberos authentication, SELinux Multi Level Security (MLS) and Multi Category Security (MCS) integration, partially described in:
https://dodcio.defense.gov/Portals/0/Documents/Library/DoD-ZTStrategy.pdf
and
https://dodcio.defense.gov/Portals/0/Documents/Library/(U)ZT_RA_v2.0(U)_Sep22.pdf .
I have noticed that your framework is currently only supporting:
https://github.com/dun/munge/
That framework does not meet our IA requirements.
Here are some links for GEOAxIS, OpenID, OAuth2, Kerberos authentication, SELinux Multi Level Security (MLS) and Multi Category Security (MCS):
https://portal.gxaws.com/
https://openid.net/
https://github.com/openid
https://oauth.net/2/
https://github.com/golang/oauth2
https://web.mit.edu/kerberos/
https://github.com/krb5
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/using_selinux/using-multi-level-security-mls_using-selinux
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/using_selinux/assembly_using-multi-category-security-mcs-for-data-confidentiality_using-selinux
Is integrating these capabilities part of your current development roadmap, and if so, where may I find this documented? If not, when do you estimate that these capability integrations will be integrated into your development roadmap and when do you estimate that they will be integrated?
Thank you in advance for your reply.
Sincerely yours,
wrthissell
Dear flux-security Developers,
I am studying your flux-framework capability for suitability for our application ecosystem. Our ecosystem has Information Assurance (IA) requirements for GEOAxIS, OpenID, OAuth2, Kerberos authentication, SELinux Multi Level Security (MLS) and Multi Category Security (MCS) integration, partially described in:
https://dodcio.defense.gov/Portals/0/Documents/Library/DoD-ZTStrategy.pdf
and
https://dodcio.defense.gov/Portals/0/Documents/Library/(U)ZT_RA_v2.0(U)_Sep22.pdf .
https://github.com/dun/munge/
That framework does not meet our IA requirements.
Here are some links for GEOAxIS, OpenID, OAuth2, Kerberos authentication, SELinux Multi Level Security (MLS) and Multi Category Security (MCS):
https://portal.gxaws.com/
https://openid.net/
https://github.com/openid
https://oauth.net/2/
https://github.com/golang/oauth2
https://web.mit.edu/kerberos/
https://github.com/krb5
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/using_selinux/using-multi-level-security-mls_using-selinux
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/using_selinux/assembly_using-multi-category-security-mcs-for-data-confidentiality_using-selinux
Sincerely yours,
wrthissell