Hey there, thanks so much for letting us know about your requirements and perspective! Right now we're working on the auth roadmap, investigating solutions for SSO, 2FA and RBAC. We will definitely share updates as we get further in the process! Until we know more on how these will be implemented, we can't really say how it will roll out but Cloud is currently our main target.
I did find this open Github issue for SSO/RBAC, the latter of which should resolve your concerns around user management, please leave a thumbs up and add a comment if you can:
https://github.com/airbytehq/airbyte/issues/3583
In the meantime it may be possible to improve access control depending on how it's hosted, for example:
• Google Cloud offers a service called
Identity-Aware Proxy that verifies users by OAuth before access is granted (please hit 👍 on
this Github issue to prioritize writing a tutorial)
• AWS has a similar solution called
AWS Systems Manager Session Manager
• Setting up OAuth2-Proxy in front of Airbyte as suggested in the
Okta blog, or another reverse proxy in front of Airbyte with HTTP basic auth (e.g.
nginx,
traefik)
Let us know if we can help you implement the above solutions.
Either way we will be releasing updates about auth in Airbyte as they come! Thanks again for the input, learning more about your needs is incredibly important in helping us prioritize features and designing their implementation.