Skip to content

Migrate Azure Service Principals that access storage to UC Storage Credentials #339

@nfx

Description

@nfx

We should automate ACLs based on Instance Profiles / Service Principals and other legacy security mechanisms.

See the data collected in:

Expected flow:

  1. check all service principals in azure_storage_account_info.csv
  2. check all storage credentials
  3. see which service principals have matching storage credentials
  4. report what credentials are missing
  5. prompt-confirm creation of storage credential from service principal
  6. give user three options: terraform config, invoke AWS CLI, pick an existing role, create via API

Related issues:

Metadata

Metadata

Assignees

Labels

cloud/azureissues related to AzureenhancementNew feature or requestmigrate/clustersgo/uc/upgrade Upgrade Interactive Clustersmigrate/externalgo/uc/upgrade SYNC EXTERNAL TABLES step

Type

No type

Projects

Status

No status

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions