AWS to GCP sans service account keys!! - Workload Identity Federation

Sdílet
Vložit

Komentáře • 45

  • @abrahamrohithroy7421
    @abrahamrohithroy7421 Před rokem

    Yes, this worked flawlessly. Awesome!

  • @jagdishbelapure7521
    @jagdishbelapure7521 Před 4 měsíci

    This is awesome explanation, thank you for the video!

  • @arunabhamittra8652
    @arunabhamittra8652 Před 2 lety +5

    Happy Teacher's Day GK Sir !!!!! Thank you for enriching our lives !

  • @shukrilius
    @shukrilius Před rokem

    Thank You for this useful video 👍

  • @MaheshVelicheti
    @MaheshVelicheti Před 2 lety

    Happy Teachers day Cloud Guru.

  • @TheBest-ev3lm
    @TheBest-ev3lm Před 7 měsíci +2

    Do you have a Terraform Script to perform the above?

  • @shwetagairos
    @shwetagairos Před 2 lety

    Hi GK, thank you for making these videos. You are my favorite.
    You did not show us the policy you attached to AWS instances. Would have been helpful.

    • @shukrilius
      @shukrilius Před rokem

      You can just create a new IAM Role and it is not necessary to add any permission, I created an empty role, attached it into an EC2 and worked.
      You can also use the fisrt option from WIF Granting Access session and do not "bind" it to any EC2/role,as he used in this video.
      It works also 😊👍

  • @su-1337
    @su-1337 Před 2 lety

    You are amazing, you are one of few notepad++ IT guys left 😂

  • @VivekYadav-iy5os
    @VivekYadav-iy5os Před 2 lety

    Sir first of all you are a inspiring person. Now my question is i am db2dba(luw) how to shift to cloud or any pathway can u suggest step by step to acheive my goal

  • @lipaacharjee9083
    @lipaacharjee9083 Před 2 lety

    Hello GK, I am not from IT background, shall I go for Cloud technology, I want to learn

  • @MrStark-kb7tc
    @MrStark-kb7tc Před 2 lety

    Hi did you used application default credentials method with WIF?

  • @gobindasaluja2097
    @gobindasaluja2097 Před 2 lety

    will we able to use gcloud commands on Ec2 instance after all this steps?

  • @mallikarjuna7624
    @mallikarjuna7624 Před 2 lety

    Hi sir ,buckets are created in gcp or ec2 instance

  • @Ryan-Gordon
    @Ryan-Gordon Před rokem

    Would this be possible to use with the gmail api? We need to be able to define "with_subject"

  • @logicstv
    @logicstv Před rokem

    Can this be scoped to a specific gcp project rather than Org?

  • @chaitanyakrishna5873
    @chaitanyakrishna5873 Před 2 lety

    First like... I am ready

  • @hardikmittal5740
    @hardikmittal5740 Před 2 lety

    Can you pls create a video on workload identity to access inside google cloud kubernetes without RBAC roles?!!

  • @stkmgr00
    @stkmgr00 Před rokem

    Hi GK, thanks for great video and it's really helpful.
    One question about the python program you used to list gcp buckets . what is this "GOOGLE_CLOUD_PROJECT" and value you assigned ?

    • @shukrilius
      @shukrilius Před rokem

      "GOOGLE_CLOUD_PROJECT" refers to GCP Project ID.

  • @shivakumarnaidu
    @shivakumarnaidu Před 2 lety

    Sir where can I personally chat with u??? Regarding my case

  • @benw305
    @benw305 Před 2 lety

    You have to leave an EC2 instance running on AWS?

  • @mynameishappy7126
    @mynameishappy7126 Před 2 lety

    Excellent..waiting for this... can we do this between onprem cluster and gcp? Could you prepare a demo on that

    • @CloudAdvocate
      @CloudAdvocate  Před 2 lety +1

      You need Identity from onprem. If your onprem vm is part of ldap maybe it is possible. I haven't tried it though.

    • @mynameishappy7126
      @mynameishappy7126 Před 2 lety

      @@CloudAdvocate thanks for the reply...will try from my end... all the best ...

  • @ArulThangaRaja
    @ArulThangaRaja Před 3 měsíci

    how to authenticate gcloud using aws temporary terminal credentials

  • @adapasrnsdurgarao9342
    @adapasrnsdurgarao9342 Před 2 lety

    Hi Gk I took 3 years gap after my graduation(computer science engineering) and I don't have any experience before, now I'm going to learn about cloud but I'm in confusion state which one I pick and which certificate Is beneficial to me to start career in cloud please suggest me Gk

    • @CloudAdvocate
      @CloudAdvocate  Před 2 lety

      Pick anyone cloud and start with fundamental certification or associate level certification.

  • @ManishSingh-ll4ws
    @ManishSingh-ll4ws Před rokem

    Can we see gk-ec2-role-instance details ?

    • @shukrilius
      @shukrilius Před rokem +1

      You can just create a new IAM Role and it is not necessary to add any permission, I created an empty role, attached it into an EC2 and worked.
      You can also use the fisrt option from WIF Granting Access session and do not "bind" it to any EC2/role,as he used in this video.
      It works also 😊👍

  • @saiteju8169
    @saiteju8169 Před rokem

    GK. If possible could you make a video to use workload identity for github OIDC token, i wanted to remove SA keys from my github actions so this can be a best fit 😊

    • @CloudAdvocate
      @CloudAdvocate  Před rokem

      Dude you read my mind. I will create that

    • @saiteju8169
      @saiteju8169 Před rokem

      @@CloudAdvocate thanks a lot 😁

    • @CloudAdvocate
      @CloudAdvocate  Před rokem

      czcams.com/video/zRF5uTWXV8Y/video.html there you go

  • @mallikarjuna7624
    @mallikarjuna7624 Před 2 lety

    Where you created the buckets ??

  • @SKWonderWanderer
    @SKWonderWanderer Před rokem

    Hay Bro, its not working and getting permission denied error while running sample.py.
    Please help!!

    • @shukrilius
      @shukrilius Před rokem

      In my case was necessary to inform the "Absolute Path" for the credentials file. Give it a try!

  • @karthimt1306
    @karthimt1306 Před 2 lety

    Hello sir. How can I contact you bro. I want some guidance please help me brooo.🥺 I was text you in instagram..

    • @CloudAdvocate
      @CloudAdvocate  Před 2 lety

      Sorry, I will check the text on insta.

    • @OutOfDevOps
      @OutOfDevOps Před 2 lety

      @@CloudAdvocate thank you for the amazing content you produce. How would be possible to contact you?