Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Oauth2 proxy using workload identity does not work when a component has no authentication.identity defined #1302

Open
satr opened this issue Feb 25, 2025 · 0 comments
Assignees
Labels
🐛 bug Something isn't working

Comments

@satr
Copy link
Contributor

satr commented Feb 25, 2025

Got and error

invalid configuration:
  entra federated token authentication is enabled, but AZURE_FEDERATED_TOKEN_FILE variable is not set, check your workload identity configuration```

  • OAuth2 proxy pod needs a label "azure.workload.identity/use": "true",
  • service account needs an annotation "azure.workload.identity/client-id": "11111111-2222-3333-4444-555555555555"

This example does not correctly stated that the service account needs this label

@satr satr self-assigned this Feb 25, 2025
@satr satr added the 🐛 bug Something isn't working label Feb 25, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
🐛 bug Something isn't working
Projects
None yet
Development

No branches or pull requests

1 participant