Use Workload Identity Federation in GCP secrets engine in Vault Enterprise

I have seen this guide, Manage federated workload identities with AWS IAM and Vault Enterprise | Vault | HashiCorp Developer, to use Workload Identity Federation instead of long-lived AWS secrets in the set up of an aws secrets engine in Vault Enterprise.

Does a similar guide for doing for a GCP secrets engine? What is the minimum version of Vault Enterprise that would support this integration?

Is this what you are looking for?

If so, Iā€™d have to check on the next part of your question about what version this is available in.

This is it. Thank you!!! It would be great if you would be able to find out when it supported.

I see that WIF (Workload Identity Federation) is mentioned on the v1.18.x and v1.17.x version pages of this doc but not the v1.16.x one. Not sure if that means that support started in v1.17.x or that the docs are behind.

I checked internally and confirmed GCP WIF support was added in 1.17.

Thanks very much for the confirmation.

1 Like