Skip to content

Infisical Kubernetes Auth with Client JWT as Reviewer JWT Token is not working #5167

@tuxtof

Description

@tuxtof

Describe the bug

Configuring Infiscal Kubernetes authentication with Client JWT as Reviewer JWT Token is not working because external-secrets service account doesn't have the system:auth-delegator permission

To Reproduce
Steps to reproduce the behavior:

  1. Install ESO
  2. Configure a SecretStore using Infisical and kubernetesAuthCredentials
  3. Configure Infisical Kubernetes Auth to use Client JWT as Reviewer JWT Token (leave the Token Reviewer JWT field empty)

Expected behavior
ESO needs to authenticate correctly against Infiscial using Kubernetes Auth and Client JWT as Reviewer JWT Token

Additional context
doc here
and specifically option2 of the guide

Metadata

Metadata

Assignees

No one assigned

    Labels

    kind/bugCategorizes issue or PR as related to a bug.

    Type

    No type

    Projects

    Status

    Done

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions