Even if I succeed to override the credentials file the authentication fails because of the serviceAccountToken.audience field in the manifest which can receive only a single value. I get an error: The audience in ID Token does not match the expected audience.
Setting up workload identity federation in Kubernetes across two Google Cloud projects involves configuring both projects, creating service accounts, enabling workload identity, and establishing trust between the projects. Below is a step-by-step guide:
Assumptions:
You have two Google Cloud projects: Project A and Project B.
You have the necessary permissions to perform actions in both projects.
Steps:
1. Enable Workload Identity in Both Projects:
Enable workload identity for both projects using the following commands:
Looking for garage door repair near me? A Plus Garage Door Repairs is here for you in Palm Harbor also with 24/7 for emergency repairs. Garage Door Repair near me