Note NetKingdom layering review in INTENT
Records this repository's layer in the NetKingdom IT-security layer model (Taxonomy / Tooling / Engines / Staff) and what should change in this INTENT as a result. Links to the review that established the model: gate-house/history/2026-08-28-security-layer-model-and-gate-house-recut.md The note flags pending adaptation only; the body is unchanged. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Assistant: claude-code Assistant-Model: opus Assistant-Process: 2564823@bnt-lap001 Assistant-Session: 2a7ed827-4928-4b9f-8613-9135c9cadfe9
This commit is contained in:
parent
270a065383
commit
1299ef60a3
1 changed files with 15 additions and 0 deletions
15
INTENT.md
15
INTENT.md
|
|
@ -1,5 +1,20 @@
|
||||||
# INTENT
|
# INTENT
|
||||||
|
|
||||||
|
> **NetKingdom layering review — 2026-08-28.** This repository's role was reviewed
|
||||||
|
> against the NetKingdom IT-security layer model: **Taxonomy → Tooling → Engines →
|
||||||
|
> Staff**, layered by determinism and by the kind of artifact each layer produces.
|
||||||
|
> Findings and the argument behind them:
|
||||||
|
> `gate-house/history/2026-08-28-security-layer-model-and-gate-house-recut.md`.
|
||||||
|
> The model as currently stated is `gate-house/INTENT.md` § "Where Gate House Sits";
|
||||||
|
> it is ruled to become a `net-kingdom/canon/standards/` standard, not yet written.
|
||||||
|
>
|
||||||
|
> The layer rule that binds every repository: **Staff never touches tooling
|
||||||
|
> directly. It acts only through engine APIs.**
|
||||||
|
>
|
||||||
|
> **This repository is Tooling — deterministic infrastructure and state.** State the layer: key-cape packages the third-party identity tooling (authelia, lldap, privacy-idea) behind a versioned IAM profile. It owns authentication and identity claims only. Because "auth" is ambiguous across the estate, this INTENT should say explicitly that key-cape is **not** an authorization decision point — that is access-engine's, and it stays the only one.
|
||||||
|
>
|
||||||
|
> *This note records what should change. The body below is not yet adapted.*
|
||||||
|
|
||||||
## Purpose
|
## Purpose
|
||||||
|
|
||||||
This repository exists to provide a **lightweight, profile-conformant identity and access management (IAM) system**.
|
This repository exists to provide a **lightweight, profile-conformant identity and access management (IAM) system**.
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue