Skip to content

[release/9.0] Use WIF for OneLocBuild in DevDiv - #17418

Merged
missymessa merged 3 commits into
release/9.0from
missymessa/oneloc-devdiv-wif-release-9.0
Aug 27, 2026
Merged

[release/9.0] Use WIF for OneLocBuild in DevDiv#17418
missymessa merged 3 commits into
release/9.0from
missymessa/oneloc-devdiv-wif-release-9.0

Conversation

@missymessa

Copy link
Copy Markdown
Member

Backport of #17415 for Arcade consumers pinned to release/9.0. Enables the existing Ceapex WIF path for DevDiv/DevDiv while preserving PAT fallback for other projects and explicit opt-out callers. The affected DevDiv pipelines have been authorized for the project-scoped service connection. Relates to AB#10151.

Acquire a short-lived Ceapex feed token in both supported Azure DevOps projects so DevDiv consumers no longer fall back to dn-bot-ceapex-package-r.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Copilot-Session: 42b6e46d-b9c0-4558-856d-1d1bdb50609d
Copilot AI lite review requested due to automatic review settings August 26, 2026 23:56
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

Copilot-Session: 42b6e46d-b9c0-4558-856d-1d1bdb50609d

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Backports the release/9.0 update to allow OneLocBuild to use a project-scoped WIF (Entra) service connection in DevDiv in addition to dnceng/internal, while retaining the PAT-based fallback path and documenting the behavior for template consumers.

Changes:

  • Extend the federated-token acquisition and Ceapex feed auth selection logic to include the DevDiv Azure DevOps project.
  • Update OneLocBuild template documentation to describe the new CeapexServiceConnection parameter behavior and DevDiv authorization requirement.

Reviewed changes

Copilot reviewed 2 out of 2 changed files in this pull request and generated 2 comments.

File Description
eng/common/core-templates/job/onelocbuild.yml Enables WIF-based Ceapex auth in DevDiv by expanding the TeamProject gating logic.
Documentation/OneLocBuild.md Documents the CeapexServiceConnection parameter and its supported-project behavior.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

Comment thread eng/common/core-templates/job/onelocbuild.yml Outdated
Comment thread Documentation/OneLocBuild.md Outdated
Copilot AI review requested due to automatic review settings August 26, 2026 23:58

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Copilot reviewed 2 out of 2 changed files in this pull request and generated no new comments.

@missymessa
missymessa requested a review from mmitche August 27, 2026 00:06
Preserve the latest GitHub App authentication changes while adding Ceapex WIF for DevDiv and clarifying the PAT fallback documentation.

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

Copilot-Session: 42b6e46d-b9c0-4558-856d-1d1bdb50609d
Copilot AI review requested due to automatic review settings August 27, 2026 00:08

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Copilot reviewed 2 out of 2 changed files in this pull request and generated no new comments.

@missymessa
missymessa enabled auto-merge (squash) August 27, 2026 14:46
@missymessa

Copy link
Copy Markdown
Member Author

/azp run

@azure-pipelines

Copy link
Copy Markdown
Azure Pipelines:
Successfully started running 1 pipeline(s).

@missymessa
missymessa merged commit 29b7c36 into release/9.0 Aug 27, 2026
11 of 13 checks passed
@missymessa
missymessa deleted the missymessa/oneloc-devdiv-wif-release-9.0 branch August 27, 2026 18:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants