Skip to content

Support for Microsoft Entra ID (Azure AD) On-Behalf-Of (OBO) Flow in Trino #208

@cccs-jc

Description

@cccs-jc

We are unable to successfully implement the On-Behalf-Of (OBO) flow when using Trino with the iceberg-auth-manager. While the AuthManager appears to be configured correctly for standard OAuth2, Entra ID's specific requirements for token exchange (exchanging a user's JWT for a service-level token) do not seem to be supported or are failing during the handshake.

Is AuthManager supposed to support Microsoft Entra ID as of yet?

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions