Skip to content

Upgrade AWS SDK for Go to support AWS IAM Roles for K8s ServiceAccounts #7450

@tomaspinho

Description

@tomaspinho

Is your feature request related to a problem? Please describe.
Yes, the current version of the AWS SDK for Go that ships with Vault (v1.19.39) does not support using a K8s ServiceAccount to authenticate against a a AWS IAM Role when Vault is deployed inside a Kubernetes cluster. See: https://docs.aws.amazon.com/eks/latest/userguide/iam-roles-for-service-accounts-minimum-sdk.html

Describe the solution you'd like
Bump the version of AWS SDK for Go.

Describe alternatives you've considered
We could hijack the entrypoint of our Vault containers to prepopulate IAM credentials, but that would be ugly.

Explain any additional use-cases
NA

Additional context
https://docs.aws.amazon.com/eks/latest/userguide/iam-roles-for-service-accounts.html

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions