Which solution will meet these requirements with the LEAST operational overhead?

1 Comment

  1. Nicholas
    Author

    To the best of my knowledge, the answer is:
    Create an IAM OpenID Connect (OIDC) identity provider (IdP) in AWS Identity and Access Management (IAM). Create a new IAM role with the appropriate trust policy that allows the sts:AssumeRoleWithWebIdentity API call from the GitHub OIDC IdP. Update GitHub to assume the role for the pipeline.

Leave a Reply

Your email address will not be published. Required fields are marked *

19 − 3 =