[DRIVERS-2642] Run AWS Web Identity Test on a Separate Host Created: 01/Jun/23  Updated: 06/Jun/23

Status: Backlog
Project: Drivers
Component/s: Evergreen
Fix Version/s: None

Type: Task Priority: Unknown
Reporter: Steve Silvester Assignee: Unassigned
Resolution: Unresolved Votes: 0
Labels: None
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Driver Changes: Needed - No Spec Changes

 Description   

Summary

In BUILD-17302 we identified that drivers were removing the instance profile from the EG EC2 hosts to support the AWS web identity tests, which was interfering with other test runs using the same host.
In DRIVERS-2639 we worked around the problem by ensuring that the instance profile was reinstated during task teardown.

The better long-term solution is to use Kanopy for the web identity tests by leveraging IAM roles for service accounts.



 Comments   
Comment by Jason Walsh [ 01/Jun/23 ]

steve.silvester@mongodb.com let me know if you want my help writing the K8s manifests. We also have a repository that creates IAM roles used by Service Accounts in Kanopy.

Generated at Thu Feb 08 08:26:05 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.