Skip to content

ci(e2e): use OIDC for AWS ECR#1561

Merged
crazy-max merged 1 commit into
masterfrom
e2e-aws-ecr-oidc
Jun 11, 2026
Merged

ci(e2e): use OIDC for AWS ECR#1561
crazy-max merged 1 commit into
masterfrom
e2e-aws-ecr-oidc

Conversation

@crazy-max

Copy link
Copy Markdown
Member

The e2e workflow now configures AWS credentials through GitHub OIDC for AWS ECR and ECR Public jobs.

This removes the AWS access key secrets from the registry credential matrix while keeping the other registry credentials unchanged.

cc @zampani-docker

@crazy-max

Copy link
Copy Markdown
Member Author

Expected to fail for now:

Assuming role with OIDC
Retry AssumeRole: attempt 1 of 12 failed: Could not assume role with OIDC: Not authorized to perform sts:AssumeRoleWithWebIdentity. Retrying after 17ms.

Signed-off-by: CrazyMax <1951866+crazy-max@users.noreply.github.com>
@crazy-max crazy-max requested a review from tonistiigi June 11, 2026 19:55
@crazy-max crazy-max marked this pull request as ready for review June 11, 2026 19:55
@crazy-max crazy-max merged commit d2aace8 into master Jun 11, 2026
72 checks passed
@crazy-max crazy-max deleted the e2e-aws-ecr-oidc branch June 11, 2026 21:22
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants