Allow short-lived AWS credentials

Add SESSION_TOKEN to aws-secret and the pod
environment. (Fixes #3)
This commit is contained in:
Brian Ristuccia
2024-08-22 16:43:49 -04:00
parent 23efcfc904
commit 3b9e63251b
5 changed files with 14 additions and 0 deletions
+1
View File
@@ -92,6 +92,7 @@ Create a secret for irsa-manager to access AWS:
kubectl create secret generic aws-secret -n irsa-manager-system \
--from-literal=aws-access-key-id=<your-access-key-id> \
--from-literal=aws-secret-access-key=<your-secret-access-key> \
--from-literal=aws-session-token=<your-aws-session-token> # Optional \
--from-literal=aws-region=<your-region> \
--from-literal=aws-role-arn=<your-role-arn> # Optional: Set this if you want to switch roles