GoogleCloudPlatform / GoogleCloudPlatform/cloud-sql-proxy-operator

Simplify Workload Identity Federation for Cloud SQL workloads

Ouverte
#706 1 commentaire 0 réactions 1 personne assignée Réclamée par @hessjcg Voir sur GitHub
priority: p2 type: feature request
Langage dominant
Go
Étoiles
120
Forks
18
Métriques de merge des PR
Aucune PR mergée en 30 j

Description

[Workload identity federation](https://cloud.google.com/sql/docs/mysql/connect-kubernetes-engine) makes it possible to log in to the databases using the identity managed by K8s principals and an IAM service account. This is tricky to set up.

Consider ways that the operator could assist with the configuration. Perhaps the user specify an IAM principal in the AuthProxyWorkload, then the operator could automatically configure the K8s service accounts to apply the correct K8s principal to the pods where the AuthProxyWorkload is attached.

See https://github.com/GoogleCloudPlatform/cloud-sql-proxy-operator/issues/705

Guide de contribution

Ouvrir le guide de contribution

Évaluation

Cette issue n'a pas encore été évaluée.

Recevez les nouvelles issues par e-mail

Un résumé court des issues GitHub adaptées aux débutants.