Azure DevOps Workload Identity Federation with Azure Overview. NO MORE SECRETS!

  Рет қаралды 12,741

John Savill's Technical Training

John Savill's Technical Training

Күн бұрын

Getting rid of secrets when our Azure DevOps pipelines need to talk to Azure!
🔎 Looking for content on a particular topic? Search the channel. If I have something it will be there!
▬▬▬▬▬▬ C H A P T E R S ⏰ ▬▬▬▬▬▬
00:00 - Introduction
00:08 - Cross service authentication
01:25 - Using a secret
05:11 - ODIC federation
06:02 - OIDC
07:48 - Service connection using workload identity federation
11:36 - The token flow
16:15 - Creating a new service connection
17:11 - Converting an existing
18:02 - Using a managed identity
20:19 - Summary
▬▬▬▬▬▬ K E Y L I N K S 🔗 ▬▬▬▬▬▬
► Whiteboard:
🔗 github.com/johnthebrit/Random...
▬▬▬▬▬▬ Want to learn more? 🚀 ▬▬▬▬▬▬
📖 Recommended Learning Path for Azure
🔗 learn.onboardtoazure.com
🥇 Certification Content Repository
🔗 github.com/johnthebrit/Certif...
📅 Weekly Azure Update
🔗 • Azure Infrastructure U...
☁ Azure Master Class
🔗 • Microsoft Azure Master...
⚙ DevOps Master Class
🔗 • DevOps Master Class
💻 PowerShell Master Class
🔗 • PowerShell Master Class
🎓 Certification Cram Videos
🔗 • Microsoft Certificatio...
🧠 Mentoring Content
🔗 • Virtual Mentoring
❔ Questions? Maybe I answered it in my FAQ
🔗 savilltech.com/faq
👕 Cure Childhood Cancer Charity T-Shirt Channel Store
🔗 johns-t-shirts-store.creator-...
👂 Enable the subtitles and from there you can translate to your native language via the auto-translate feature in settings! • KZfaq Captions and A... for a demo of using this feature.
SUBSCRIBE ✅ / @ntfaqguy
#microsoft #azure #johnsavillstechnicaltraining

Пікірлер: 21
@NTFAQGuy
@NTFAQGuy 5 ай бұрын
Get rid of those pesky secrets for our ADO service connections with workload identity federation! Please make sure to read the description for the chapters and key information about this video and others. ⚠ P L E A S E N O T E ⚠ 🔎 If you are looking for content on a particular topic search the channel. If I have something it will be there! 🕰 I don't discuss future content nor take requests for future content so please don't ask 😇 🤔 Due to the channel growth and number of people wanting help I no longer can answer or even read questions and they will just stay in the moderation queue never to be seen so please post questions to other sites like Reddit, Microsoft Community Hub etc. 👂 Translate the captions to your native language via the auto-translate feature in settings! kzfaq.info/get/bejne/rJuSaJZetc2pnX0.html for a demo of using this feature. Thanks for watching! 🤙
@catalystred
@catalystred Ай бұрын
Just adding this note for anyone in the future. If you use the Workload Identity Federation (manual) option, you need to grant the permission "Microsoft.Resources/subscriptions/read" at the subscription level to the Managed Identity. Azure DevOps will give an error stating as much when you try to save the Service Connection.
@va55ag0
@va55ag0 5 ай бұрын
Been waiting for this feature for so long! Thanks for the great deep dive explanation of how this all works 😊
@Dikimkd
@Dikimkd 5 ай бұрын
Excellent video. Clearly explained and very fun to watch!
@NTFAQGuy
@NTFAQGuy 5 ай бұрын
Glad you enjoyed it!
@massikherfallah6075
@massikherfallah6075 5 ай бұрын
Thank you for this videos. Now it is more clear :)
@GiovanniOrlandoi7
@GiovanniOrlandoi7 5 ай бұрын
Great video, John! Thank you ☁️
@NTFAQGuy
@NTFAQGuy 5 ай бұрын
My pleasure!
@AzureCloudCowboy
@AzureCloudCowboy 5 ай бұрын
Hey John. Thanks good video.
@soucianceeqdamrashti8175
@soucianceeqdamrashti8175 2 ай бұрын
Excellent presentation as always! Learned a lot!
@NTFAQGuy
@NTFAQGuy 2 ай бұрын
Glad you enjoyed it!
@NZScottie
@NZScottie 5 ай бұрын
I created my first one of these late last year. Now that you have made a video on it I will covert all my production ones to it. Haha. Seriously awesome not have expiring secrets.
@NTFAQGuy
@NTFAQGuy 5 ай бұрын
lol but yes :)
@rahulsawant485
@rahulsawant485 4 ай бұрын
You are great what an easy explanation of openid and oauth and how workload identity is utilising it. Thanks
@NTFAQGuy
@NTFAQGuy 4 ай бұрын
Glad it was helpful!
@JeffreyJBlanchard
@JeffreyJBlanchard 5 ай бұрын
Great video!
@NTFAQGuy
@NTFAQGuy 5 ай бұрын
Glad you enjoyed it
@jeffbrowntech
@jeffbrowntech 5 ай бұрын
Hi John, great overview. I've already been working on writing new pipelines using workload identity. Besides the differences you outlined in the video, do you have any preferences for using managed identity vs. service principal for the service connnection?
@NTFAQGuy
@NTFAQGuy 5 ай бұрын
Been using service principals (app registration) primarily.
Deep Dive on Microsoft Entra Private Access
1:01:08
John Savill's Technical Training
Рет қаралды 36 М.
Entra Group Provision to AD - Leverage Entra Governance Features On-Premises!
32:26
John Savill's Technical Training
Рет қаралды 10 М.
Amazing weight loss transformation !! 😱😱
00:24
Tibo InShape
Рет қаралды 61 МЛН
Heartwarming Unity at School Event #shorts
00:19
Fabiosa Stories
Рет қаралды 23 МЛН
Alex hid in the closet #shorts
00:14
Mihdens
Рет қаралды 15 МЛН
AKS Workload Identity - Quick Tutorial
12:17
Azure Kubernetes Service (AKS)
Рет қаралды 2,2 М.
Azure Verified Modules Overview
23:24
John Savill's Technical Training
Рет қаралды 17 М.
Coding Shorts: Using Azure Entra ID to Protect Your APIs
19:22
Shawn Wildermuth
Рет қаралды 2,7 М.
Microsoft Azure Managed Identity Deep Dive
48:40
John Savill's Technical Training
Рет қаралды 77 М.
AWS to GCP sans service account keys!! - Workload Identity Federation
14:56
Azure DevOps Tutorial for Beginners | CI/CD with Azure Pipelines
36:29
TechWorld with Nana
Рет қаралды 1,2 МЛН
Understanding and Getting Started with ZERO TRUST
57:11
John Savill's Technical Training
Рет қаралды 131 М.
AZ-305 Designing Microsoft Azure Infrastructure Solutions Study Cram - Over 100,000 views
3:38:35
John Savill's Technical Training
Рет қаралды 430 М.
Amazing weight loss transformation !! 😱😱
00:24
Tibo InShape
Рет қаралды 61 МЛН