Azure DevOps Workload Identity Federation with Azure Overview. NO MORE SECRETS!

  Рет қаралды 17,761

John Savill's Technical Training

John Savill's Technical Training

Күн бұрын

Пікірлер: 25
@NTFAQGuy
@NTFAQGuy 10 ай бұрын
Get rid of those pesky secrets for our ADO service connections with workload identity federation! Please make sure to read the description for the chapters and key information about this video and others. ⚠ P L E A S E N O T E ⚠ 🔎 If you are looking for content on a particular topic search the channel. If I have something it will be there! 🕰 I don't discuss future content nor take requests for future content so please don't ask 😇 🤔 Due to the channel growth and number of people wanting help I no longer can answer or even read questions and they will just stay in the moderation queue never to be seen so please post questions to other sites like Reddit, Microsoft Community Hub etc. 👂 Translate the captions to your native language via the auto-translate feature in settings! kzbin.info/www/bejne/rGbFZmZjhcx4o6s for a demo of using this feature. Thanks for watching! 🤙
@MySaravan
@MySaravan 2 ай бұрын
your videos are like movies, starts with the explanation of each components/characters and its role then assemble everything to make us understand how it works together. Explanation about managed identity vs work load identity towards the end is a perfect climax. Thanks for sharing us all the details you collected from various sources in a short video. you are an inspiration.
@patricknelson
@patricknelson Ай бұрын
GCP guy here: Now that I’ve got this primer, I can more quickly translate some of my technobabble into technobabble that my Azure colleagues would understand (and vice versa). 😅 Just wanted to call that out; you’re doing an exceptional job explaining it vs. what I’ve seen in explainers on the GCP side. I’m already very familiar with the high-level/GCP specific details as well as much of the lower-level OIDC specific details, but I think you went the extra mile taking the time to really explain what it is. Sadly, developers can be easily put off and intimidated by the complexity of this alternative form of authentication, despite its greater security and convenience (more convenient assuming they’re doing proper key management…). So anything you can do to help increase understanding is a huge bonus for security!
@va55ag0
@va55ag0 10 ай бұрын
Been waiting for this feature for so long! Thanks for the great deep dive explanation of how this all works 😊
@NZScottie
@NZScottie 10 ай бұрын
I created my first one of these late last year. Now that you have made a video on it I will covert all my production ones to it. Haha. Seriously awesome not have expiring secrets.
@NTFAQGuy
@NTFAQGuy 10 ай бұрын
lol but yes :)
@Dikimkd
@Dikimkd 10 ай бұрын
Excellent video. Clearly explained and very fun to watch!
@NTFAQGuy
@NTFAQGuy 10 ай бұрын
Glad you enjoyed it!
@gufretnik
@gufretnik 5 ай бұрын
Thank you! Another amazing video with your easy to digest flow! :) P.S. Although I can get to do the SP myself, I kind of prefer to have it as a MI
@rahulsawant485
@rahulsawant485 10 ай бұрын
You are great what an easy explanation of openid and oauth and how workload identity is utilising it. Thanks
@NTFAQGuy
@NTFAQGuy 10 ай бұрын
Glad it was helpful!
@PakkaIdiot
@PakkaIdiot 4 ай бұрын
As always great job, John!
@GiovanniOrlandoi7
@GiovanniOrlandoi7 10 ай бұрын
Great video, John! Thank you ☁️
@NTFAQGuy
@NTFAQGuy 10 ай бұрын
My pleasure!
@massikherfallah6075
@massikherfallah6075 10 ай бұрын
Thank you for this videos. Now it is more clear :)
@AzureCloudCowboy
@AzureCloudCowboy 10 ай бұрын
Hey John. Thanks good video.
@soucianceeqdamrashti8175
@soucianceeqdamrashti8175 8 ай бұрын
Excellent presentation as always! Learned a lot!
@NTFAQGuy
@NTFAQGuy 8 ай бұрын
Glad you enjoyed it!
@catalystred
@catalystred 7 ай бұрын
Just adding this note for anyone in the future. If you use the Workload Identity Federation (manual) option, you need to grant the permission "Microsoft.Resources/subscriptions/read" at the subscription level to the Managed Identity. Azure DevOps will give an error stating as much when you try to save the Service Connection.
@Jblaaa-codes
@Jblaaa-codes 10 ай бұрын
Great video!
@NTFAQGuy
@NTFAQGuy 10 ай бұрын
Glad you enjoyed it
@jeffbrowntech
@jeffbrowntech 10 ай бұрын
Hi John, great overview. I've already been working on writing new pipelines using workload identity. Besides the differences you outlined in the video, do you have any preferences for using managed identity vs. service principal for the service connnection?
@NTFAQGuy
@NTFAQGuy 10 ай бұрын
Been using service principals (app registration) primarily.
Understanding and Using SUDO in Windows! Easy Command Line Elevations.
23:16
John Savill's Technical Training
Рет қаралды 10 М.
Microsoft Azure Managed Identity Deep Dive
48:40
John Savill's Technical Training
Рет қаралды 93 М.
Война Семей - ВСЕ СЕРИИ, 1 сезон (серии 1-20)
7:40:31
Семейные Сериалы
Рет қаралды 1,6 МЛН
Как Ходили родители в ШКОЛУ!
0:49
Family Box
Рет қаралды 2,3 МЛН
AKS Workload Identity - Quick Tutorial
12:17
Azure Kubernetes Service (AKS)
Рет қаралды 4,3 М.
Coding Shorts: Using Azure Entra ID to Protect Your APIs
19:22
Shawn Wildermuth
Рет қаралды 7 М.
How to use Github Actions with Google's Workload Identity Federation
11:33
AZ-700 Designing and Implement Azure Networking Study SUPER Guide!
2:51:59
John Savill's Technical Training
Рет қаралды 337 М.
Workload Identity (OIDC) for AKS
15:18
Houssem Dellai
Рет қаралды 8 М.
Azure Key Vault Deep Dive (AZ-500)
1:07:43
John Savill's Technical Training
Рет қаралды 84 М.
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,8 МЛН
Azure Traffic Manager Deep Dive
56:48
John Savill's Technical Training
Рет қаралды 16 М.