Shared Secrets Workload ID
Business Critical Plan Feature
This is a Business Critical Plan feature. For more information, see our pricing plans or contact our sales team.
Workload-identity authentication lets you use access policies to grant your self-hosted Space cluster access to your cloud providers. Workload identity authentication grants temporary AWS credentials to your Kubernetes pod based on a service account. Assigning IAM roles and service accounts allows the pod to assume the IAM role dynamically and much more securely than static credentials.
This guide walks you through creating an IAM trust role policy and applying it to your EKS cluster for secret sharing with Kubernetes.