Daniel Carl Jones created HADOOP-18605:
------------------------------------------
Summary: S3A AssumedRoleCredProvider should use Instance Role
credentials in chain for assuming role
Key: HADOOP-18605
URL: https://issues.apache.org/jira/browse/HADOOP-18605
Project: Hadoop Common
Issue Type: Sub-task
Components: auth, fs/s3
Reporter: Daniel Carl Jones
The AssumedRoleCredentialsProvider today creates its own credential provider
set to use when getting session credentials from STS. This includes only
environment variables and simple credentials provider.
[https://github.com/apache/hadoop/blob/952d707240cb7dd088820d8b39e705b77fa3b6c4/hadoop-tools/hadoop-aws/src/main/java/org/apache/hadoop/fs/s3a/auth/AssumedRoleCredentialProvider.java#L114-L116]
It should at least include EC2 Instance Role credentials, possibly others, by
default.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]