Skip to content

Add kite pool storage identity bindings - #155

Merged
wenhuiZilliz merged 1 commit into
masterfrom
codex/gcp-i-existing-network
Aug 13, 2026
Merged

Add kite pool storage identity bindings#155
wenhuiZilliz merged 1 commit into
masterfrom
codex/gcp-i-existing-network

Conversation

@wenhuiZilliz

Copy link
Copy Markdown
Collaborator

Summary

  • Add GCP Workload Identity binding for vectorlake-kite-pool/kite-index-pool-sa to the BYOC-I storage service account default list.
  • Add Azure federated identity credential for vectorlake-kite-pool/kite-index-pool-sa so AKS BYOC-I matches the same storage access coverage.

Why

This prevents newly created BYOC environments from missing storage permissions for the kite index pool pod on GCP and Azure.

Notes

  • GCP change is in examples/gcp-project-byoc-I/locals.tf.
  • Azure change is in modules/azure/byoc_i/default-aks/federations.tf.

@huanghaoyuanhhy

Copy link
Copy Markdown

/lgtm

@wenhuiZilliz
wenhuiZilliz merged commit 9ad8993 into master Aug 13, 2026
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants