v16: 2FA access-review evidence via admin users API #79
Etiketter
Inga etiketter
area/backups
area/ci
area/control-panel
area/identity
area/infra
area/observability
area/payments
area/security
area/storage
area/web
blocked
needs-info
needs-triage
ready-for-implementation
type
bug
type
chore
type
docs
type
epic
type
feature
type
task
wontfix
Ingen milstolpe
Inget projekt
Inga tilldelade
1 deltagare
Notiser
Förfallodatum
Inget förfallodatum satt.
Beroenden
Inga beroenden satta
Referens
bitborg/bitborg-infra#79
Läser in…
Hänvisa till i nytt ärende
Ingen beskrivning angiven.
Ta bort grenen "%!s()"
Borttagning av en gren är permanent. Även om den borttagna grenen kan fortsätta existera en kort tid innan den faktiskt tas bort, kan det INTE ångras i de flesta fall. Vill du fortsätta?
Tier 2 v16 follow-up (gated on #73 landing). v16's
GET /api/v1/admin/userscan list which users have 2FA enabled (PR 12091).Small script (or reconciler-adjacent read) surfacing 2FA status per user as access-review evidence for the ISO 27001 roadmap (access-control review control). Output should land somewhere auditable (e.g. a dated report kept internally).
Note: web login is SSO-only via Kanidm, so Kanidm's credential policy is the primary control — this evidence mainly covers API/git-credential hygiene and any residual local accounts.