OIDC & IRSA Patterns
CommunityEnable keyless CI/CD and Kubernetes pod identity.
Authornicolasmosquerar
Version1.0.0
Installs0
System Documentation
What problem does it solve?
OIDC and IRSA patterns enable keyless authentication for CI/CD pipelines and Kubernetes workloads by replacing static credentials with short-lived tokens and scoped roles.
Core Features & Use Cases
- OIDC-based authentication for CI/CD platforms (GitHub Actions, GitLab CI) to AWS without static credentials
- IRSA support for Kubernetes pods on EKS, enabling per-service-account IAM roles
- Fine-grained trust policies scoped to repositories/branches and to Kubernetes service accounts
- Security best practices and reusable patterns for auditable access control
Quick Start
Configure an AWS OIDC provider for your CI/CD platform and enable IRSA on your EKS cluster to start using short-lived credentials.
Dependency Matrix
Required Modules
None requiredComponents
Standard package💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: OIDC & IRSA Patterns Download link: https://github.com/nicolasmosquerar/AI-skills-for-Iac/archive/main.zip#oidc-irsa-patterns Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.