-
Feature Request
-
Resolution: Unresolved
-
Undefined
-
None
-
2.5
-
False
-
-
False
- What is the nature and description of the request?
Remove the need for AAP to use service accounts when authenticating against 3rd party applications such as Hashi Vault for secret retrieval. CBA is looking at the same approach for other 3rd party integrations such as SNOW.
- Why does the customer need this? (List the business requirements here)
- No need to maintain service accounts and their lifecycle activities such as password rotation
- Align to more modern methods of using identity federation using OAUTH and OIDC
- How would you like to achieve this? (List the functional requirements here)
Please refer to the attached document for a sample sequence diagram
- List any affected known dependencies: Doc, UI etc..
Product / engineering teams to determine
- Github Link if any
Refer to the attached document for how GitHub solves this.
- links to