Directories
¶
| Path | Synopsis |
|---|---|
|
cmd
|
|
|
apiserver
command
|
|
|
iam-maintenance
command
|
|
|
internal
|
|
|
apiserver/application/authn/jwks
Package jwks 提供 Authn 的公共 JWK Set 发布用例。
|
Package jwks 提供 Authn 的公共 JWK Set 发布用例。 |
|
apiserver/application/authn/linking
Package linking 管理已认证用户的 LoginIdentity 绑定与解绑。
|
Package linking 管理已认证用户的 LoginIdentity 绑定与解绑。 |
|
apiserver/application/authn/session
Package session 编排 AuthN 用户会话用例门面。
|
Package session 编排 AuthN 用户会话用例门面。 |
|
apiserver/application/authn/signin
Package signin 编排凭据登录
|
Package signin 编排凭据登录 |
|
apiserver/application/authn/signin/proof
Package proof 构建认证凭据领域模型 认证凭据是认证的输入,用于认证器进行认证
|
Package proof 构建认证凭据领域模型 认证凭据是认证的输入,用于认证器进行认证 |
|
apiserver/application/authn/signingkey
Package signingkey orchestrates IAM signing-key administration and lifecycle.
|
Package signingkey orchestrates IAM signing-key administration and lifecycle. |
|
apiserver/application/authn/signup
Package signup 实现 AuthN 登录身份开通(SignUp / Provision)用例。
|
Package signup 实现 AuthN 登录身份开通(SignUp / Provision)用例。 |
|
apiserver/application/authz/assignment
Package assignment contains the native role-assignment write use cases.
|
Package assignment contains the native role-assignment write use cases. |
|
apiserver/application/authz/assignmentadmission
Package assignmentadmission decides whether a caller may change role assignments.
|
Package assignmentadmission decides whether a caller may change role assignments. |
|
apiserver/application/authz/objectattributeadmission
Package objectattributeadmission defines explicit trust in caller supplied attributes.
|
Package objectattributeadmission defines explicit trust in caller supplied attributes. |
|
apiserver/application/authz/policypublication
Package policypublication publishes accepted authorization facts into the immutable runtime snapshot used for permission decisions.
|
Package policypublication publishes accepted authorization facts into the immutable runtime snapshot used for permission decisions. |
|
apiserver/application/authz/role
Package role 角色应用服务
|
Package role 角色应用服务 |
|
apiserver/docs
Package iam_authz_generated_swagger Code generated by swaggo/swag.
|
Package iam_authz_generated_swagger Code generated by swaggo/swag. |
|
apiserver/domain/authn/grant
Package grant establishes the complete online authentication result.
|
Package grant establishes the complete online authentication result. |
|
apiserver/domain/authn/signingkey
Package signingkey owns non-sensitive signing-key lifecycle rules.
|
Package signingkey owns non-sensitive signing-key lifecycle rules. |
|
apiserver/domain/authn/token
Package token models AuthN tokens and their lifecycle services.
|
Package token models AuthN tokens and their lifecycle services. |
|
apiserver/domain/authz/authorization
Package authorization owns the domain language and policies used to produce an authorization decision from immutable authorization facts.
|
Package authorization owns the domain language and policies used to produce an authorization decision from immutable authorization facts. |
|
apiserver/domain/authz/policy
Package policy 策略领域包
|
Package policy 策略领域包 |
|
apiserver/domain/authz/resource
Package resource 资源领域包
|
Package resource 资源领域包 |
|
apiserver/domain/authz/role
Package role 角色领域包
|
Package role 角色领域包 |
|
apiserver/domain/identity/useraccess
Package useraccess defines the narrow Identity capabilities exposed to authentication and authorization modules.
|
Package useraccess defines the narrow Identity capabilities exposed to authentication and authorization modules. |
|
apiserver/infra/crypto
Package crypto provides generic authentication cryptography adapters.
|
Package crypto provides generic authentication cryptography adapters. |
|
apiserver/infra/mysql/suggest
Package suggest 从 MySQL 加载档案联想索引项。
|
Package suggest 从 MySQL 加载档案联想索引项。 |
|
apiserver/infra/token/jwt
Package jwt implements IAM access/service token encoding with JWS compact JWT.
|
Package jwt implements IAM access/service token encoding with JWS compact JWT. |
|
apiserver/infra/token/keyset
Package keyset adapts signing-key domain facts to cryptographic material, persistence ports, JWS key lookup and public JWKS serialization.
|
Package keyset adapts signing-key domain facts to cryptographic material, persistence ports, JWS key lookup and public JWKS serialization. |
|
apiserver/testfixtures/assessment
Package assessment contains the QS contract used only by integration tests.
|
Package assessment contains the QS contract used only by integration tests. |
|
apiserver/testfixtures/authzdb
Package authzdb creates disposable databases for authorization contract tests.
|
Package authzdb creates disposable databases for authorization contract tests. |
|
apiserver/testfixtures/authzschema
Package authzschema provides business independent authorization examples.
|
Package authzschema provides business independent authorization examples. |
|
apiserver/transport/rest/authz/dto
Package dto 赋权相关的 DTO 定义
|
Package dto 赋权相关的 DTO 定义 |
|
apiserver/transport/rest/authz/handler
Package handler 角色分配处理器
|
Package handler 角色分配处理器 |
|
apiserver/transport/rest/idp
Package restful IDP 模块 REST API 路由注册
|
Package restful IDP 模块 REST API 路由注册 |
|
apiserver/transport/rest/idp/handler
Package handler IDP 模块 REST API 处理器基础
|
Package handler IDP 模块 REST API 处理器基础 |
|
apiserver/transport/rest/idp/request
Package request 定义 IDP 模块 REST API 请求结构
|
Package request 定义 IDP 模块 REST API 请求结构 |
|
apiserver/transport/rest/idp/response
Package response 定义 IDP 模块 REST API 响应结构
|
Package response 定义 IDP 模块 REST API 响应结构 |
|
pkg/code
Package code defines shared error codes used across the iam services.
|
Package code defines shared error codes used across the iam services. |
|
pkg/grpc
Package grpc 提供通用的 gRPC 服务器基础设施
|
Package grpc 提供通用的 gRPC 服务器基础设施 |
|
pkg/middleware
定义多个 gin 中间件
|
定义多个 gin 中间件 |
|
pkg/middleware/authz
Package authz enforces authorization decisions at the HTTP boundary.
|
Package authz enforces authorization decisions at the HTTP boundary. |
|
pkg/safelog
Package safelog converts errors into bounded metadata suitable for logs.
|
Package safelog converts errors into bounded metadata suitable for logs. |
|
pkg/server
Package server 定义了所有平台通用的通用 apiserver
|
Package server 定义了所有平台通用的通用 apiserver |
|
pkg
|
|
|
auth
Package auth encrypt and compare password string.
|
Package auth encrypt and compare password string. |
|
core
Package core 实现了一些核心功能,用于apimachinery
|
Package core 实现了一些核心功能,用于apimachinery |
|
organization
Package organization 定义业务组织 ID 的跨模块约定(非 IAM 身份域)。
|
Package organization 定义业务组织 ID 的跨模块约定(非 IAM 身份域)。 |
|
sdk
Package sdk 提供 IAM 官方 Go SDK 的统一入口。
|
Package sdk 提供 IAM 官方 Go SDK 的统一入口。 |
|
sdk/_examples
Package _examples 包含 SDK 使用示例
|
Package _examples 包含 SDK 使用示例 |
|
sdk/_examples/authz
command
授权判定(PDP)示例
|
授权判定(PDP)示例 |
|
sdk/_examples/basic
command
基础用法示例
|
基础用法示例 |
|
sdk/_examples/mtls
command
mTLS 生产环境配置示例
|
mTLS 生产环境配置示例 |
|
sdk/_examples/service_auth
command
服务间认证示例
|
服务间认证示例 |
|
sdk/_examples/verifier
command
Token 验证示例
|
Token 验证示例 |
|
sdk/auth/challenge
Package challenge provides a REST AuthN v2 client for public authentication challenges.
|
Package challenge provides a REST AuthN v2 client for public authentication challenges. |
|
sdk/auth/client
Package client 提供认证相关 gRPC 客户端能力。
|
Package client 提供认证相关 gRPC 客户端能力。 |
|
sdk/auth/loginidentity
Package loginidentity provides a REST AuthN v2 client for managing linked login identities.
|
Package loginidentity provides a REST AuthN v2 client for managing linked login identities. |
|
sdk/auth/loginv2
Package loginv2 provides the REST AuthN v2 explicit login client.
|
Package loginv2 provides the REST AuthN v2 explicit login client. |
|
sdk/auth/signup
Package signup provides REST AuthN v2 clients for public signup and internal mock-consumer onboarding.
|
Package signup provides REST AuthN v2 clients for public signup and internal mock-consumer onboarding. |
|
sdk/authz
Package authz 提供授权判定(PDP)能力。
|
Package authz 提供授权判定(PDP)能力。 |
|
sdk/config
Package config 提供 IAM SDK 的公开配置结构与加载入口。
|
Package config 提供 IAM SDK 的公开配置结构与加载入口。 |
|
sdk/identity
Package identity 提供身份管理、档案命令和档案关系能力。
|
Package identity 提供身份管理、档案命令和档案关系能力。 |
|
sdk/idp
Package idp 提供身份提供者(IDP)能力。
|
Package idp 提供身份提供者(IDP)能力。 |
|
sdk/internal/observability
Package observability 提供可观测性支持
|
Package observability 提供可观测性支持 |
|
sdk/internal/transport
Package transport 提供 gRPC 传输层功能
|
Package transport 提供 gRPC 传输层功能 |
|
tenant
Package tenant 定义 IAM 授权域(多租户 SaaS 隔离)的 string 约定。
|
Package tenant 定义 IAM 授权域(多租户 SaaS 隔离)的 string 约定。 |
|
web
|
|
Click to show internal directories.
Click to hide internal directories.



