Skip to content

Commit f664fad

Browse files
authored
docs: Recommend using GitHub OIDC role assumption over hardcoded access keys (#111)
1 parent 819220f commit f664fad

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

README.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -27,8 +27,8 @@ jobs:
2727
token: ${{ secrets.GITHUB_TOKEN }}
2828
- uses: aws-actions/configure-aws-credentials@v2
2929
with:
30-
aws-access-key-id: ${{ secrets.AWS_ACCESS_KEY_ID }}
31-
aws-secret-access-key: ${{ secrets.AWS_SECRET_ACCESS_KEY }}
30+
role-to-assume: ${{ secrets.ASSUME_ROLE_ARN }}
31+
role-session-name: ci
3232
aws-region: us-east-2
3333
# Build inside Docker containers
3434
- run: sam build --use-container

0 commit comments

Comments
 (0)