-
Notifications
You must be signed in to change notification settings - Fork 66
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
azure-pipelines: Add workflow identity federation to the test pipeline template #1724
Conversation
Updated the main |
That is epic, great work.
I'm happy to hand over my denim overalls and tool box 👷 🪠 🧰 |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
tiny feedback, otherwise looks good to go
Modify the
test.yml
pipeline template to add support for workflow identity federation for nightly testing pipelines. We do this by adding two new steps, one dummy keyvault step to connect to the newly-createdAzCodeE2ETests
service connection for this purpose. The other is a "real" Key Vault step connecting to theAzCodeE2ETestsCredsKV
key vault, to obtain the identifiers required to connect to theAzCodeE2ETests
service connection and obtain an OIDC token in code. Then, the needed environment variables are manually propagated to theTest
step.