Skip to content

Reference example of a secure Ledger deployment using mTLS and JWT tokens

License

Notifications You must be signed in to change notification settings

matteolimberto-da/ex-secure-daml-infra

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

36 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

DAML logo

Download License

Welcome to Secure DAML Infrastructure

This repository contains a reference implementation of how to setup a DAML Ledger with full "Infrastructure" security, i.e. secure connections over TLS and connection authorization via tokens. This will involve a test Public Key Infrastructure (PKI) to create TLS and client certificates and JSON Web Token (JWT) for all user and service authentication. We will use Auth0 as an example of an oAuth provider for this, though the concepts should work with a number of others, e.g.Okta, OneLogin, Ping.

The demo application covers the following aspects:

  1. Create a reference PKI with root and intermediate CAs and TLS certificates
  2. Integrate security with Auth0 for user and service accounts (M2M)
  3. Configure TLS security for all connections including database
  4. A UI written in TypeScript and React authenticating through Auth0
  5. A series of tests to demonstrate the services running over secure connections
  6. Test DAML Triggers and Python bots for DAML automation

This builds on the original sample ex-authentication-auth0 that was described in blog: Easy authentication for your distributed app with DAML and Auth0

Getting started

Documentation is also provided detailing each of the steps.

Copyright (c) 2020 Digital Asset (Switzerland) GmbH and/or its affiliates. All rights reserved. SPDX-License-Identifier: Apache-2.0

About

Reference example of a secure Ledger deployment using mTLS and JWT tokens

Resources

License

Security policy

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • Shell 48.4%
  • JavaScript 23.0%
  • Java 14.9%
  • Python 8.4%
  • Scala 2.5%
  • HTML 2.1%
  • Other 0.7%