Nicholas Whittaker 9/19/2023

Using Buildkite OIDC with Hashicorp Vault

Read Original

This article details a method to replace long-lived AppRole credentials in Hashicorp Vault with Buildkite's OpenID Connect (OIDC) tokens. It explains how to configure Vault's JWT auth backend to accept tokens from Buildkite agents, enabling fine-grained, pipeline-specific secret access policies to improve security in a CI/CD environment.

Using Buildkite OIDC with Hashicorp Vault

Comments

No comments yet

Be the first to share your thoughts!

Browser Extension

Get instant access to AllDevBlogs from your browser