Browse Source
Fix: Propagate OIDC claims for dynamic IAM policies (#8060)
Fix: Propagate OIDC claims for dynamic IAM policies (#8060)
Fix: Propagate OIDC claims to IAM identity for dynamic policy variables Fixes #8037. Ensures additional OIDC claims (like preferred_username) are preserved in ExternalIdentity attributes and propagated to IAM tokens, enabling substitution in dynamic policies.pull/8017/merge
committed by
GitHub
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
3 changed files with 135 additions and 12 deletions
-
28weed/iam/oidc/oidc_provider.go
-
54weed/iam/oidc/oidc_provider_test.go
-
65weed/s3api/s3_iam_middleware.go
Write
Preview
Loading…
Cancel
Save
Reference in new issue