nixery icon indicating copy to clipboard operation
nixery copied to clipboard

Support signed URLs with Google Cloud Application Default Credentials (ADC)

Open flokli opened this issue 4 years ago • 1 comments

When running nixery on a GCP instance with the default service account / in a cloud run function / GKE, nixery should still be able to emit signed URLs to GCS buckets. It currently has code only doing this if GOOGLE_APPLICATION_CREDENTIALS is set explicitly.

flokli avatar Apr 29 '21 13:04 flokli

It should not do this without the feature being explicitly enabled, as the signBlob API unfortunately requires service account impersonation credentials. Useful to have though!

tazjin avatar Apr 29 '21 13:04 tazjin