Skip to content

Switch AWS auth from static keys to OIDC federation#61

Merged
pdayboch-cisco merged 1 commit intomasterfrom
oidc-aws-credentials
Mar 27, 2026
Merged

Switch AWS auth from static keys to OIDC federation#61
pdayboch-cisco merged 1 commit intomasterfrom
oidc-aws-credentials

Conversation

@pdayboch-cisco
Copy link
Copy Markdown
Collaborator

Replace hardcoded AWS access keys with GitHub Actions OIDC to assume the github-openapi-s3-download IAM role. This eliminates static credentials and uses short-lived tokens issued by GitHub's OIDC provider, verified by AWS via the registered identity provider.

Replace hardcoded AWS access keys with GitHub Actions OIDC to assume
the github-openapi-s3-download IAM role. This eliminates static
credentials and uses short-lived tokens issued by GitHub's OIDC
provider, verified by AWS via the registered identity provider.
@pdayboch-cisco pdayboch-cisco merged commit e4c89ce into master Mar 27, 2026
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant