Workload Identity Federation
Workload Identity Federation allows interoperability between external identity providers and OCI services by performing exchanges between supported external identity tokens and OCI security tokens. A principal or workload that has a trusted token can make requests to OCI services without needing long-lived API keys or additional OCI-native credentials. This section contains the following topics:
This section contains the following topics:
- Token Exchange Grant Type Two-Legged Authorization Flow Example
- Token Exchange Grant Type: Exchanging a Kerberos Token for a UPST
- Token Exchange Grant Type: Exchanging a JSON Web Token for a UPST
- Token Exchange Grant Type: Exchanging a JSON Web Token for a RPST
- Token Exchange Grant Type: Exchanging JSON Web Token for an OAuth Access Token
- Token Exchange Grant Type: Identity Assertion JWT Authorization Grant