Login using Google Service Account from metadata

This issue is archived. You can view it, but you can't modify it. Learn more

XMLWordPrintable

      I would like the possibility to use metadata server to authenticate on a distant kubernetes cluster.

      Jenkins is running certain pipelines on to a distant kubernetes cluster. To this day I use a private key generated from the SA in GCP.
      But because jenkins is already running on a gke instance I would prefer to use directly the metadata server to get the token.
      From a security point of view I don't like to have a json key of my SA and the google-oauth-plugin already provides the metadata service.

      Is there any way we can have the option to use "Google Service Account from metadata" for k8s authentification ?

            Assignee:
            Unassigned
            Reporter:
            Maxime
            Archiver:
            Jenkins Service Account

              Created:
              Updated:
              Archived: