I use RBAC and have Pulumi store a role that's assumed on deploy. However, this still requires AWS credentials that can assume that role in order to run Pulumi. Is this what you mean, or are you looking to embed static credentials in the configuration file?
p
prehistoric-kite-30979
02/28/2022, 10:12 PM
we store credz + role to assume in the stack config and then use that to auth to eks
prehistoric-kite-30979
02/28/2022, 10:12 PM
so yes basically static credz in our stack config
p
purple-plumber-90981
03/01/2022, 4:53 AM
in our CI pipe, we subprocess out a call to `aws eks update-kubeconfig and then
No matter how you like to participate in developer communities, Pulumi wants to meet you there. If you want to meet other Pulumi users to share use-cases and best practices, contribute code or documentation, see us at an event, or just tell a story about something cool you did with Pulumi, you are part of our community.