Skip to content

Opening book details…

About this document

Securely Connect GitHub Actions To AWS Using IAM Roles and OIDC - by Ravindra Singh - Medium by Sash Sashsz is a document available to read on EtoBox.

This document outlines a policy for GitHub Actions workflows that allows only specific workflows from a designated repository to assume an AWS role, ensuring security through audience and subject conditions. It provides a detailed update for the GitHub Actions workflow to implement OIDC for keyless authentication when deploying a static website to S3. Additionally, it includes troubleshooting tips for common issues related to token audience, role permissions, OIDC provider existence, and workflow permission

Author
Sash Sashsz
Language
EN