Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Enhancement Request: azurerm backend OIDC (Workload Identity federation) authentication support for token refresh #35664

Open
jaredfholgate opened this issue Sep 2, 2024 · 1 comment
Labels
backend/azure enhancement new new issue not yet triaged

Comments

@jaredfholgate
Copy link
Contributor

Terraform Version

latest

Use Cases

As a Terraform user with remote state in Azure Blob Storage, I want to use OIDC (Workload identity federation) authentication with Azure DevOps and not have to worry about id token expiration.

Attempted Solutions

There are no good work arounds for this.

Proposal

Use the new azurepiplinescredential classes to automatically refresh the id token: https://devblogs.microsoft.com/azure-sdk/improve-security-posture-in-azure-service-connections-with-azurepipelinescredential/

References

@jaredfholgate jaredfholgate added enhancement new new issue not yet triaged labels Sep 2, 2024
@crw
Copy link
Collaborator

crw commented Sep 3, 2024

Thanks for this feature request! If you are viewing this issue and would like to indicate your interest, please use the 👍 reaction on the issue description to upvote this issue. We also welcome additional use case descriptions. Thanks again!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backend/azure enhancement new new issue not yet triaged
Projects
None yet
Development

No branches or pull requests

2 participants