Uploaded image for project: 'Ansible Cloud Automation'
  1. Ansible Cloud Automation
  2. ACA-1956

Support Identity as a credential

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • azure
    • False
    • Hide

      None

      Show
      None
    • False

      Problem Description:

      Add Managed Identity as a credential option in AAP

      Supporting documentation

      https://docs.google.com/document/d/12ghRs38lJoAteHDKa4xASPu5qdNflij7pbPejN4X-PU/edit?pli=1&tab=t.0#heading=h.e2bjs6yd0054

      Testing Criteria and/or Outcome
       * Deploy VM in Azure with SystemAssigned or UserAssigned Identity
       * Create KeyVault with accesspolicy using above identity
       * Create Secret in above Keyvault
       * Proof of Concept code that runs on VM should be able to retrieve above secret without additional credentials being provided
       * Take POC from above and work with AAP team to create Credential plugin
       ** Determine what fields will be available in plugin
       ** If it's systemAssigned no object_id will need to be specified, if it's UserAssigned the user will need to specify.
       ** What Secrets to request from KeyVault, List?
       ** Secrets made available as environment vars?

              bpeck@redhat.com Bill Peck
              bpeck@redhat.com Bill Peck
              Votes:
              1 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated: