Friction

Feature request · Permissions & security · Annoyance

Custom authentication between frontend and other Temporal services

2 source threads · first seen 2022-09 · last seen 2023-09

Summary

The SDK supports header providers for worker auth, but nothing equivalent exists server-side, so client certificates cannot be replaced for inter-service requests. An interceptor is requested.

Affects
Operators with custom authentication requirements

Evidence

Excerpts are copied word for word from the source; follow the link to read it in full.

“So, I think there is no way to replace client certificates with other authentication method for the requests between Temporal's microservices”

“Users would like to be able to define custom headers where this info is present instead”

Report this item