Skip to content

docs: note ESO workload identity auth for Azure Key Vault env groups#378

Open
mintlify[bot] wants to merge 1 commit into
mainfrom
mintlify/1b307708
Open

docs: note ESO workload identity auth for Azure Key Vault env groups#378
mintlify[bot] wants to merge 1 commit into
mainfrom
mintlify/1b307708

Conversation

@mintlify

@mintlify mintlify Bot commented Jun 23, 2026

Copy link
Copy Markdown
Contributor

Summary

Document that on AKS clusters with Workload Identity enabled and a federated cloud account, Porter now authenticates the External Secrets Operator to Azure Key Vault via Workload Identity Federation instead of a service principal secret.

Changes

Context

Upstream PR: porter-dev/code#6477 — feat: authenticate ESO to Azure Key Vault via workload identity. The change is automatic: when env groups sync to Azure Key Vault on an AKS cluster that has Workload Identity enabled and a federated cloud account, ESO now uses a Porter-managed UAMI + federated identity credential instead of a static client secret. The legacy service principal secret is removed from the workload cluster on the next sync. No API or CLI surface changes ship with this PR; the doc update simply tells users what authentication path is in use.

cc @jackowfish for review.

@mintlify mintlify Bot requested a review from jackowfish June 23, 2026 21:23
@mintlify

mintlify Bot commented Jun 23, 2026

Copy link
Copy Markdown
Contributor Author

Preview deployment for your docs. Learn more about Mintlify Previews.

Project Status Preview Updated (UTC)
porter 🟢 Ready View Preview Jun 23, 2026, 9:28 PM

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants