Feature request · Permissions & security · Annoyance
Custom authentication between frontend and other Temporal services
2 source threads · first seen 2022-09 · last seen 2023-09
Summary
The SDK supports header providers for worker auth, but nothing equivalent exists server-side, so client certificates cannot be replaced for inter-service requests. An interceptor is requested.
- Affects
- Operators with custom authentication requirements
Evidence
Excerpts are copied word for word from the source; follow the link to read it in full.
“So, I think there is no way to replace client certificates with other authentication method for the requests between Temporal's microservices”
“Users would like to be able to define custom headers where this info is present instead”