Skip to content

Commit a1d3183

Browse files
committed
Use OIDC Role in workflows
1 parent 0dca8d8 commit a1d3183

File tree

2 files changed

+4
-4
lines changed

2 files changed

+4
-4
lines changed

.github/workflows/botocore-sync.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -12,8 +12,8 @@ jobs:
1212
- name: Configure AWS Credentials
1313
uses: aws-actions/configure-aws-credentials@v4
1414
with:
15-
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
16-
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
15+
role-to-assume: ${{ secrets.CODEBUILD_ROLE_ARN }}
16+
role-duration-seconds: 10800
1717
aws-region: us-west-2
1818

1919
- name: Run CodeBuild

.github/workflows/create-release.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -14,8 +14,8 @@ jobs:
1414
- name: Configure AWS Credentials
1515
uses: aws-actions/configure-aws-credentials@v4
1616
with:
17-
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
18-
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
17+
role-to-assume: ${{ secrets.CODEBUILD_ROLE_ARN }}
18+
role-duration-seconds: 10800
1919
aws-region: us-west-2
2020

2121
- name: Run CodeBuild

0 commit comments

Comments
 (0)