Run stack with user credential from AWS IAM Identity Center

We use AWS IAM Identity Center for authenticating users to the AWS environment. When a user runs a stack in Spacelift, we want the run to use their own identity for the AWS credentials. Technically, both Spacelift and AWS IdC are using the same external IdP (Azure AD), so it feels like Spacelift could connect the two in some way and authenticate to AWS with the user's identity and retrieve a credential for an account/role that the user is authorized.

Certainly, runs triggered by events would retrieve credentials differently, since there would be no user interaction. This is just intended for when a user triggers a run directly themselves.

Workaround
None
Problem
-

Please authenticate to join the conversation.

Upvoters
Status

⬆️ Gathering votes

Board

💡 Feature Requests

Date

Over 1 year ago

Subscribe to post

Get notified by email when there are changes.