Skip to content

[Security] Add Egress Gateway #423

@ginaxu1

Description

@ginaxu1

Problem

Security Gaps https://docs.google.com/document/d/1TD5HHy-VKZSt2H__f-V5FS5793ESjK1Uu-Jo5KYi6js/edit?tab=t.0

Proposed Solution

To have a true Zero Trust architecture, add Egress gateway to handle token validation and all workflows. This will be heavily audited
Example: when a handler is called in PDP, a function in Egress gateway validates the signature (whether PDP response is for the original data requested). Same for CE

Alternatives

No response

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions