Skip to content

Fix FIPS docker publishing AWS credentials#17301

Merged
wadells merged 1 commit into
masterfrom
walt/fix-role-assumption
Oct 11, 2022
Merged

Fix FIPS docker publishing AWS credentials#17301
wadells merged 1 commit into
masterfrom
walt/fix-role-assumption

Conversation

@wadells
Copy link
Copy Markdown
Contributor

@wadells wadells commented Oct 11, 2022

This is follow up to #17201, that fixes the build-docker-images pipeline error seen here:

https://drone.platform.teleport.sh/gravitational/teleport/16344/24/1

This was overlooked in #17274 as it wasn't a dronegen'd pipeline -- and I made the call to merge based on the success of the dronegen'd pipelines before this completed. :/

This should be the last of the updates, as I'm seeing all other steps complete.

Backports:

Testing Done

Underway at https://drone.platform.teleport.sh/gravitational/teleport/16348

@reedloden reedloden changed the title Fix FIPS docker publisning AWS credentials Fix FIPS docker publishing AWS credentials Oct 11, 2022
@wadells wadells merged commit da6c981 into master Oct 11, 2022
@wadells wadells deleted the walt/fix-role-assumption branch October 11, 2022 21:03
wadells added a commit that referenced this pull request Oct 11, 2022
Backports #17274 and #17301 to v11

This fixes the buildbox pipeline error seen here:

An error occurred (AccessDeniedException) when calling the GetAuthorizationToken operation: User: arn:aws:iam::146628656107:user/teleport_build_user_read_only is not authorized to perform: ecr-public:GetAuthorizationToken on resource: * because no identity-based policy allows the ecr-public:GetAuthorizationToken action

Contributes to gravitational/SecOps#213.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants