Skip to content

Instantly share code, notes, and snippets.

@salrashid123
Created December 6, 2021 13:22
Show Gist options
  • Save salrashid123/d3c8e241d58bfa294644338658ee98e5 to your computer and use it in GitHub Desktop.
Save salrashid123/d3c8e241d58bfa294644338658ee98e5 to your computer and use it in GitHub Desktop.
ks8_wif_9.txt
gcloud iam service-accounts create oidc-federated
gcloud iam service-accounts add-iam-policy-binding oidc-federated@$PROJECT_ID.iam.gserviceaccount.com \
--role roles/iam.workloadIdentityUser \
--member "principal://iam.googleapis.com/projects/$PROJECT_NUMBER/locations/global/workloadIdentityPools/pool-k8s/subject/system:serviceaccount:default:svc1-sa"
gcloud projects add-iam-policy-binding $PROJECT_ID \
--member "serviceAccount:oidc-federated@$PROJECT_ID.iam.gserviceaccount.com" \
--role roles/storage.objectAdmin
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment