[Proposal] Use System Managed Identity OR User Managed Identity for AKSCluster #292
Open
2 tasks
Labels
enhancement
New feature or request
Hello everyone
What problem are you facing?
During my tests with Crossplane I figured out that the AKSCluster API implementation uses a self-managed Service Principal under the hood. This comes with the following drawbacks:
How could Crossplane help solve your problem?
I believe that using a System Assigned Managed Identity or User Managed Identity could solve these drawbacks:
The drawback for this approach is that a change on existing cluster is required to move to a Managed Identity.
These are my thoughts on using Crossplane to deploy AKS clusters, so this is not really a feature request, but more of a discussion.
Looking forward to hear from you!
Related issues:
The text was updated successfully, but these errors were encountered: