+
Skip to content

Conversation

DanielHougaard
Copy link
Member

Description 📣

This PR adds support for multiple authentication methods for the gateway. This wraps up the work needed to allow gateway helm deployments to use multiple authentication methods through environment variables. We started this initiative in a previous PR where the main focus was to add HTTP proxying support to the gateway. This PR completes the multiple authentication methods initiative.

Type ✨

  • Bug fix
  • New feature
  • Improvement
  • Breaking change
  • Documentation

@DanielHougaard DanielHougaard self-assigned this Jun 6, 2025
@maidul98
Copy link
Collaborator

maidul98 commented Jun 6, 2025

🎉 Snyk checks have passed. No issues have been found so far.

security/snyk check is complete. No issues have been found. (View Details)

Copy link
Contributor

@greptile-apps greptile-apps bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

PR Summary

Major update to Infisical Gateway adding support for multiple authentication methods (Universal Auth, Kubernetes, Azure, GCP, AWS IAM, OIDC, JWT). Previously limited to token-based auth only.

  • Deprecates token-only auth in helm-charts/infisical-gateway/templates/deployment.yaml in favor of flexible environment variable configuration - ensure proper secret configuration during migration
  • Introduces new environment variable INFISICAL_AUTH_METHOD_NAME in cli/packages/util/constants.go while maintaining backward compatibility with INFISICAL_GATEWAY_TOKEN_NAME_LEGACY
  • Expands gateway documentation in docs/documentation/platform/gateways/overview.mdx with detailed configuration for each auth method
  • Added validation for malformed URLs during HTTP forwarding in gateway implementation, improving security against URL manipulation
  • Documentation update needed in /docs for customers to discover new authentication methods

10 file(s) reviewed, 3 comment(s)
Edit PR Review Bot Settings | Greptile

@DanielHougaard DanielHougaard merged commit 33d740a into main Jun 8, 2025
5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants
点击 这是indexloc提供的php浏览器服务,不要输入任何密码和下载