Skip to content

Position OIDC and Keyring Encrypted File for MySQL/PXC (#214, #215)#220

Draft
brianamarie wants to merge 8 commits into
mainfrom
analysis/issues-214-215
Draft

Position OIDC and Keyring Encrypted File for MySQL/PXC (#214, #215)#220
brianamarie wants to merge 8 commits into
mainfrom
analysis/issues-214-215

Conversation

@brianamarie

Copy link
Copy Markdown
Collaborator

Summary

Positions two Enterprise-parity security capabilities for Percona Server for MySQL and Percona XtraDB Cluster, tracked in #214 (server-side OpenID Connect authentication) and #215 (Keyring Encrypted File component).

Updates:

  • products/mysql/messaging.md (Enterprise parity list, Security pillar bullets, sales enablement, Adaptability cross-reference)
  • use-cases-value-pillars/security-sovereignty-compliance.md (audit/key custody proof, MySQL OIDC use case)

Copy uses present-tense canonical framing per repo rules. Do not merge to main until the features GA.

Closes #214
Closes #215

Made with Cursor

@github-actions

Copy link
Copy Markdown
Contributor

New File Governance Check

No added markdown files detected.

Doc Coverage Check

No new markdown docs detected.

Manual waiver commands (maintainers)

  • /governance-ok all or /governance-all
  • /governance-ok new-file, /governance-ok doc-coverage
  • /governance-reset all or /governance-reset with the same token

Waiver JSON is stored in a hidden PR comment (messaging-governance-waiver-data:v1), same pattern as Impact Check.


Triggered by pull_request. Workflow content-governance-checks.yml. Docs: AUTOMATION.md, automation/README.md.

@github-actions

github-actions Bot commented Jun 30, 2026

Copy link
Copy Markdown
Contributor

{
"all": true,
"paths": [],
"reset_paths": []
}

@github-actions

Copy link
Copy Markdown
Contributor

Messaging Smart Suggestions

File Why impacted Claim Confidence
reference/canonical-naming.md License and open source positioning changes are cross-cutting. cost 0.95
reference/banned-terms.md License and open source positioning changes are cross-cutting. cost 0.95
framework/core-positioning.md License and open source positioning changes are cross-cutting. cost 0.95
framework/why-percona.md License and open source positioning changes are cross-cutting. cost 0.95
offerings/expert-support/messaging.md License and open source positioning changes are cross-cutting. cost 0.95
offerings/expertops/messaging.md License and open source positioning changes are cross-cutting. cost 0.95
offerings/expert-consulting/messaging.md License and open source positioning changes are cross-cutting. cost 0.95
framework/core-positioning.md Product messaging modules often need checks against company framing and shared pillars or offerings. cost 0.95
framework/why-percona.md Product messaging modules often need checks against company framing and shared pillars or offerings. cost 0.95

Only auto-apply suggestions at high confidence with reviewer approval.


Triggered by pull_request. Workflow smart-suggestions.yml. Docs: AUTOMATION.md, automation/README.md.

@brianamarie

Copy link
Copy Markdown
Collaborator Author

/impact-ok all

@github-actions

Copy link
Copy Markdown
Contributor

🤖 Recorded /impact-ok all. Re-running Impact Check with updated waivers.

@github-actions

github-actions Bot commented Jun 30, 2026

Copy link
Copy Markdown
Contributor

Messaging Impact Check

  • Changed files: 3

licensing-or-open-source-claims (WARN)

License and open source positioning changes are cross-cutting.

Required review files:

  • reference/canonical-naming.md (waived — /impact-ok)
  • reference/banned-terms.md (waived — /impact-ok)
  • framework/core-positioning.md (waived — /impact-ok)
  • framework/why-percona.md (waived — /impact-ok)
  • offerings/expert-support/messaging.md (waived — /impact-ok)
  • offerings/expertops/messaging.md (waived — /impact-ok)
  • offerings/expert-consulting/messaging.md (waived — /impact-ok)

Suggested additional scan:

  • use-cases-value-pillars/*.md
  • products/**/messaging.md

product-messaging-module-touch (WARN)

Product messaging modules often need checks against company framing and shared pillars or offerings.

Required review files:

  • framework/core-positioning.md (waived — /impact-ok)
  • framework/why-percona.md (waived — /impact-ok)

Suggested additional scan:

  • use-cases-value-pillars/*.md
  • offerings/*.md

Manual waiver commands (maintainers):

  • /impact-ok all (optional same-line note after all is ignored)
  • /impact-all (same as /impact-ok all)
  • /impact-ok <exact missing path>
  • /impact-reset all
  • /impact-reset <exact missing path>

Waiver state is stored in <!-- messaging-impact-waiver-data:v1 -->.


Triggered by pull_request. Workflow impact-check.yml. Docs: AUTOMATION.md, automation/README.md.

brianamarie and others added 6 commits June 30, 2026 13:27
…214, #215)

Expand the Enterprise parity inventory with server-side OpenID Connect and
Keyring Encrypted File using two-tier key management (external KMS vs local
encrypted keyring). Intended to merge when PS/PXC 8.4.11 and 9.7.2 GA.

Co-authored-by: Cursor <cursoragent@cursor.com>
Add customer-outcome copy for OpenID Connect Pluggable Authentication in open
source builds, plus a MySQL SSO alignment use case in the security pillar.
Merge at PS/PXC 8.4.11 / 9.7.2 GA.

Co-authored-by: Cursor <cursoragent@cursor.com>
Add customer-outcome copy for encrypted local keyring storage, clarify the
external KMS path when policy requires keys outside the database server, and
propagate to the security pillar. Merge at PS/PXC 8.4.11 / 9.7.2 GA.

Co-authored-by: Cursor <cursoragent@cursor.com>
…214, #215)

Update compliance conversation starters and add an OpenID Connect starter;
differentiate inspectability vs full parity list. Merge at GA.

Co-authored-by: Cursor <cursoragent@cursor.com>
…#215)

Light cross-reference in Adaptability for Emerging Workloads. Merge at GA.

Co-authored-by: Cursor <cursoragent@cursor.com>
Fixes prose-and-links Spelling (typos) false positive on HashiCorp Vault.

Co-authored-by: Cursor <cursoragent@cursor.com>
@brianamarie
brianamarie force-pushed the analysis/issues-214-215 branch from 30caefb to d039687 Compare June 30, 2026 11:27
@brianamarie brianamarie added Content & messaging Canonical copy, products, use cases, case studies, and narrative. Needs: product or GTM Product, marketing, or GTM should confirm scope, naming, or positioning. Roadmap: soon High confidence next; right after or alongside launch prep. Area: MySQL MySQL ecosystem messaging (products/mysql/ and MySQL-scoped operator lines). labels Jul 7, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Area: MySQL MySQL ecosystem messaging (products/mysql/ and MySQL-scoped operator lines). Content & messaging Canonical copy, products, use cases, case studies, and narrative. Needs: product or GTM Product, marketing, or GTM should confirm scope, naming, or positioning. Roadmap: soon High confidence next; right after or alongside launch prep.

Projects

None yet

1 participant