Skip to content

Support STACKIT Workload Identity Federation #109

Description

@philross

Is your feature request related to a problem? Please describe.

The webhook currently requires either auth-token or auth-key-path. This prevents using it on STACKIT Kubernetes Engine (SKE) with Workload Identity, where credentials are provided through a projected service-account token rather than a static token or key file.

Describe the solution you'd like

Support Workload Identity Federation similar to how stackit-cli and the terraform provider are already doing it.

Describe alternatives you've considered

As our DNS zone is deployed in a different project than the SKE cluster, we cannot use the SKE DNS extension.

Search

  • I did search for other open and closed issues before opening this.

Code of Conduct

  • I agree to follow this project's Code of Conduct

Additional context

No response

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Labels

enhancementNew feature or request

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions