OIDC Connector Support for Multiple GCP Projects
complete
B
Bright Mammal
We need the ability to configure an OIDC connector that uses a workload identity pool and service account in a different project from the cluster we want to deploy to. Our IAM standards require service accounts to be in their own project, so it's essential to provide the project we want to target in the infrastructure definition. This feature would greatly enhance our deployment flexibility.
Log In
Shylaja Sundararajan
complete
Shylaja Sundararajan
This feature is available for consumption .
This post was marked as
in progress
Rohan Gupta
this fiscal quarter
Rohan Gupta
Merged in a post:
OIDC Connector Support for Access Across Multiple GCP Projects
E
Evergreen Iguana
We need the ability to span access across multiple GCP projects using a single OIDC connector, without the need to create multiple connectors for each project. Currently, the connector is limited to a single project, and users must specify the project when setting up the connector. However, the service account provided by the connector has access to multiple projects within the same GCP account, making this restriction arbitrary and inefficient.