Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-73003

Login using Google Service Account from metadata


      I would like the possibility to use metadata server to authenticate on a distant kubernetes cluster.

      Jenkins is running certain pipelines on to a distant kubernetes cluster. To this day I use a private key generated from the SA in GCP.
      But because jenkins is already running on a gke instance I would prefer to use directly the metadata server to get the token.
      From a security point of view I don't like to have a json key of my SA and the google-oauth-plugin already provides the metadata service.

      Is there any way we can have the option to use "Google Service Account from metadata" for k8s authentification ?

            Unassigned Unassigned
            max_c Maxime
            0 Vote for this issue
            1 Start watching this issue