Uploaded image for project: 'OpenShift Cloud Credential Operator'
  1. OpenShift Cloud Credential Operator
  2. CCO-257

Make ccoctl set sts endpoints to regional in AWS credentials secrets

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: Blocker Blocker
    • None
    • None

      AWS recommends using regional STS endpoints instead of global. Make sure ccoctl creates secrets with `sts_regional_endpoints` field set to `regional`. 

       

      The sample secret data format should be as follows:

      [default]
      sts_regional_endpoints = regional
      role_name = arn:...:role/some-role-name
      web_identity_token_file = /path/to/token 

      slack thread: https://coreos.slack.com/archives/C040MMMG9B8/p1662653229381429

            abutcher@redhat.com Andrew Butcher
            akhilrane Akhil Rane (Inactive)
            Jianping Shu Jianping Shu
            Votes:
            0 Vote for this issue
            Watchers:
            12 Start watching this issue

              Created:
              Updated:
              Resolved: