[proxy] validate header auth on proxy (#7263)

This commit is contained in:
Pascal Fischer
2026-08-25 13:46:26 +02:00
committed by GitHub
parent a08f7f63f4
commit 7d83a3902d
7 changed files with 466 additions and 197 deletions
+6
View File
@@ -30,6 +30,12 @@ const (
SessionJWTIssuer = "netbird-management"
)
// HeaderUserID is the synthetic user id recorded for header-authenticated
// requests. Header auth validates a per-service secret and resolves no user
// record, so proxy access logs and management-minted session tokens both
// attribute the request to this id.
const HeaderUserID = "header-user"
// ResolveProto determines the protocol scheme based on the forwarded proto
// configuration. When set to "http" or "https" the value is used directly.
// Otherwise TLS state is used: if conn is non-nil "https" is returned, else "http".