Nicholas Whittaker 9/19/2023

Using Buildkite OIDC with Hashicorp Vault

Read Original

This article details a method to replace long-lived AppRole credentials in Hashicorp Vault with Buildkite's OpenID Connect (OIDC) tokens. It explains how to configure Vault's JWT auth backend to accept tokens from Buildkite agents, enabling fine-grained, pipeline-specific secret access policies to improve security in a CI/CD environment.

Using Buildkite OIDC with Hashicorp Vault

Comments

No comments yet

Be the first to share your thoughts!

Browser Extension

Get instant access to AllDevBlogs from your browser

Top of the Week

1
The Beautiful Web
Jens Oliver Meiert 2 votes
3
LLM Use in the Python Source Code
Miguel Grinberg 1 votes
4
Wagon’s algorithm in Python
John D. Cook 1 votes