KMSProvider for GCP does not accept access_token for the service account email

XMLWordPrintableJSON

    • Type: New Feature
    • Resolution: Duplicate
    • Priority: Major - P3
    • None
    • Affects Version/s: None
    • Component/s: None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Hi,

      I am trying to do CSFLE using GCE's default Service Account. But, the KMSProvider for GCP is looking for the "privateKey" for the SA. Our GCP admin does not allow creating keys for SA as a security measure. 

      As an alternative, can the driver accept the access token for the SA for authentication.

      Thanks,

      Ankur

              Assignee:
              Unassigned
              Reporter:
              ankur barua
              Votes:
              1 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: