Skip to content

Locking down GitHub Actions to specific Repo with OIDC #627

Discussion options

You must be logged in to vote

Sorry for the delayed response @lukewelden-mobysoft,

It does appear as if you are setting up the sub claim correctly in the trust policy. I'm curious if you can share what exactly is triggering this workflow? If you share the full workflow file we could see if some configurations to your workflow are modifying the sub claim.

I'd be curious if you could test this on any other repo/org combinations. Maybe testing this out individually might reveal some mistake you might have made when configuring this for the affected repo

Replies: 2 comments

Comment options

You must be logged in to vote
0 replies
Answer selected by peterwoodworth
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants