radius-project / radius

Radius is a cloud-native, portable application platform that makes app development easier for teams building cloud-native apps.
https://radapp.io
Apache License 2.0
1.48k stars 95 forks source link

Switch GitHub Actions over to using Azure managed identities #7309

Open AaronCrawfis opened 7 months ago

AaronCrawfis commented 7 months ago

Today we use a service principal secret in order to authenticate to Azure for functional tests. We should move this over to managed identities using OIDC federation. This prevents credentials from needing to be rotated.

Link here: https://docs.github.com/en/actions/deployment/security-hardening-your-deployments/configuring-openid-connect-in-azure

AB#11483

radius-triage-bot[bot] commented 7 months ago

We've prioritized work on this issue. Please subscribe to this issue for notifications, we'll provide updates as we make progress.

We also welcome community contributions! If you would like to pick this item up sooner and submit a pull request, please visit our contribution guidelines and assign this to yourself by commenting "/assign" on this issue.

For more information on our triage process please visit our triage overview

radius-triage-bot[bot] commented 7 months ago

:+1: We've reviewed this issue and have agreed to add it to our backlog. Please subscribe to this issue for notifications, we'll provide updates when we pick it up.

We also welcome community contributions! If you would like to pick this item up sooner and submit a pull request, please visit our contribution guidelines and assign this to yourself by commenting "/assign" on this issue.

For more information on our triage process please visit our triage overview

AaronCrawfis commented 7 months ago

Reopening - samples repo still needs to be updated

willdavsmith commented 7 months ago

Blocked by https://github.com/radius-project/radius/issues/6801

kachawla commented 2 months ago

Removing triaged label to bring it back up and understand current state of this issue.

radius-triage-bot[bot] commented 2 months ago

:+1: We've reviewed this issue and have agreed to add it to our backlog. Please subscribe to this issue for notifications, we'll provide updates when we pick it up.

We also welcome community contributions! If you would like to pick this item up sooner and submit a pull request, please visit our contribution guidelines and assign this to yourself by commenting "/assign" on this issue.

For more information on our triage process please visit our triage overview