Hi Casey,

On 12/02/2026 17:59, Casey Bodley wrote:
i don't know that radosgw has any plans for oidc integration outside
of sts and AssumeRoleWithWebIdentity. the benefit of sts for this
integration is that it works with unmodified aws clients

the user account feature in squid added fine-grained api-based control
over oidc providers, roles, and their associated iam policy:
https://docs.ceph.com/en/squid/radosgw/account/

if configuration was your main obstacle, i would hope that the
aws-compatible tooling like
https://docs.aws.amazon.com/cli/latest/reference/iam/create-open-id-connect-provider.html
would make that easier

Thank you!

Cheers,
Florian

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

_______________________________________________
ceph-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to