Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Configure custom issuer for GitHub Actions OIDC. #1012

Open
sengi opened this issue Nov 14, 2023 · 0 comments
Open

Configure custom issuer for GitHub Actions OIDC. #1012

sengi opened this issue Nov 14, 2023 · 0 comments

Comments

@sengi
Copy link
Contributor

sengi commented Nov 14, 2023

This straightforward change would help to mitigate accidental misconfiguration, without any significant downside (not likely to increase complexity, brittleness, maintenance burden or introduce any UX issues).

https://docs.github.com/en/enterprise-cloud@latest/actions/deployment/security-hardening-your-deployments/about-security-hardening-with-openid-connect#customizing-the-issuer-value-for-an-enterprise

https://awsteele.com/blog/2023/01/11/improve-github-actions-oidc-security-posture-with-custom-issuer.html

Kudos to @christophetd and @aidansteele for putting us onto this.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant