This commit is contained in:
x032205
2025-07-23 16:48:06 -04:00
parent e798eb2a4e
commit 60620840f2
2 changed files with 4 additions and 5 deletions
@@ -22,7 +22,7 @@ export type TIdentityAccessTokenJwtPayload = {
// Derived from ARN // Derived from ARN
partition: string; // "aws", "aws-gov", "aws-cn" partition: string; // "aws", "aws-gov", "aws-cn"
service: string; // "iam" service: string; // "iam", "sts"
resourceType: string; // "user" or "role" resourceType: string; // "user" or "role"
resourceName: string; resourceName: string;
}; };
@@ -72,7 +72,6 @@ For methods like OIDC, these come as claims in the token and can be made availab
``` ```
<img src="/images/platform/access-controls/abac-policy-k8s-format.png" /> <img src="/images/platform/access-controls/abac-policy-k8s-format.png" />
</Tab> </Tab>
<Tab title="AWS Attributes"> <Tab title="AWS Attributes">
For identities authenticated using AWS Auth, several attributes can be accessed: For identities authenticated using AWS Auth, several attributes can be accessed:
@@ -90,6 +89,6 @@ For methods like OIDC, these come as claims in the token and can be made availab
<img src="/images/platform/access-controls/abac-policy-aws-format.png" /> <img src="/images/platform/access-controls/abac-policy-aws-format.png" />
</Tab> </Tab>
<Tab title="Other Authentication Method Attributes"> <Tab title="Other Authentication Method Attributes">
At the moment we only support OIDC claims. Payloads on other authentication methods are not yet accessible. At the moment we only support OIDC claims, Kubernetes attributes, and AWS attributes. Payloads on other authentication methods are not yet accessible.
</Tab> </Tab>
</Tabs> </Tabs>