Тёмный

Goodbye Service Account Keys, Hello Workload Identity Federation - Building Secure Apps with GCP 

DevOps w/ George
Подписаться 262
Просмотров 6 тыс.
50% 1

Tired of juggling a million service account keys for your cloud-based application? Want to up your security game without sacrificing the joy in your day? Look no further - Workload Identity Federation is here to save the day!
In this video, i cover the following:
- What is workload identity federation (workload identity pools + IAM)?
- How to set it up on GCP
- Live Example: How to use it up with a GitHub actions workflow
Workload identity federation is simply Keyless authentication for service accounts. It solves the problems of storage of access keys, distribution, and rotation using short live dynamically provided tokens to authenticate your third party applications to Google cloud platform.
To learn more, read the docs: cloud.google.com/iam/docs/wor...
Other links:
=========
Github open id connect setup: docs.github.com/en/actions/de...
Google github auth action:
github.com/google-github-acti...
Code samples repo used in this video:
github.com/galonge/udemy-kust...
==========
To learn more about kubernetes configuration management with Kustomize, see here: www.udemy.com/course/kustomiz...

Наука

Опубликовано:

 

2 фев 2023

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 10   
@femiibrahim7645
@femiibrahim7645 Месяц назад
Wow. The most explanatory video I've seen on workflow Identity Federation
@rashmitrathod6873
@rashmitrathod6873 Год назад
Thanks George for the excellent delivery and diagrams in explaining the GCP Workload Identity federation concept with the demo, it really helped in understanding end to end workflow between GitHub and GCP and the usage of WIF.
@galonge
@galonge Год назад
You're very welcome! Thanks for watching!
@cloudtech273
@cloudtech273 6 месяцев назад
Excellent demo. Thanks !!
@user-xx8fr6jv5p
@user-xx8fr6jv5p 11 месяцев назад
Thanks George for the wonderful explanation. I have a query related to service account key rotation how with the help of workload identity federation can this be achieved?
@user-rq2dc2xo4b
@user-rq2dc2xo4b 5 месяцев назад
great demo. How would you do this for an application running on a local machine. What would be the identity provider in that scenario?
@ashwinireddyaluri2534
@ashwinireddyaluri2534 Год назад
Can we create bulk service account keys in diff projects by using groovy script
@leandrojpg
@leandrojpg 5 месяцев назад
the json download part, if I download it can I use it in the same way I would use a service account?
@pedroandredias375
@pedroandredias375 9 месяцев назад
Hi, where you found the documentation to know this sintax: ""repo:galonge/udemy-kustomize-mastery:red:refs/heads/main"?
@galonge
@galonge 4 месяца назад
HI Pedro, you can find more info on the workload identity federation docs here: cloud.google.com/iam/docs/workload-identity-federation-with-deployment-pipelines#mappings-and-conditions
Далее
Workload Identity (OIDC) for AKS
15:18
Просмотров 6 тыс.
AKS Workload Identity - Quick Tutorial
12:17
Просмотров 2,3 тыс.
Google Releases AI AGENT BUILDER! 🤖 Worth The Wait?
34:21
Google Cloud Workforce Identity Federation & Demo
20:54