Skip to content

File tree

2 files changed

+6
-4
lines changed

2 files changed

+6
-4
lines changed

.github/workflows/coverage_runner.yml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -35,6 +35,8 @@ jobs:
3535

3636
run-tests:
3737
runs-on: ${{ matrix.os }}
38+
permissions:
39+
id-token: write
3840
needs: [check_for_membership, python-versions]
3941
if: github.event_name == 'push' || needs.check_for_membership.outputs.check-result == 'true' || github.event_name == 'workflow_dispatch'
4042
name: Run tests with Python ${{ matrix.python-version }} on ${{ matrix.os }}
@@ -78,8 +80,7 @@ jobs:
7880
- name: Configure AWS Credentials
7981
uses: aws-actions/configure-aws-credentials@v4
8082
with:
81-
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
82-
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
83+
role-to-assume: ${{ secrets.AWS_HAZELCAST_OIDC_GITHUB_ACTIONS_ROLE_ARN }}
8384
aws-region: 'us-east-1'
8485

8586
- name: Get Secrets

.github/workflows/nightly_runner.yml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,6 +10,8 @@ jobs:
1010
run-tests:
1111
needs: python-versions
1212
runs-on: ${{ matrix.os }}
13+
permissions:
14+
id-token: write
1315
name: Run tests with Python ${{ matrix.python-version }} on ${{ matrix.os }}
1416
strategy:
1517
matrix:
@@ -34,8 +36,7 @@ jobs:
3436
- name: Configure AWS Credentials
3537
uses: aws-actions/configure-aws-credentials@v4
3638
with:
37-
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
38-
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
39+
role-to-assume: ${{ secrets.AWS_HAZELCAST_OIDC_GITHUB_ACTIONS_ROLE_ARN }}
3940
aws-region: 'us-east-1'
4041
- name: Get Secrets
4142
uses: aws-actions/aws-secretsmanager-get-secrets@v2

0 commit comments

Comments
 (0)