all InfoSec news
Configure federated identity between GitHub and Azure with PowerShell
DEV Community dev.to
Usually, when you want to connect a GitHub workflow to Azure, in order to manage resources, you use an Entra ID application (Azure AD). The main problem with using an App is that you need to manage a secret or a certificate. Most of the time people use a secret, it needs to be stored as a secret in GitHub, and it transits through the Internet when connecting to Azure.
But if instead of using a secret you can use …
app application azure azure ad certificate connect devops entra entra id federated federated identity github identity main manage order people powershell problem resources secret workflow