• Tiger's avatar
    Persist EKS External ID before presenting it to the user · 756bfbc8
    Tiger authored
    If the External ID can be manipulated, it is possible to
    impersonate a user that was has authenticated with AWS in
    the past but has since been deleted (which defeats the
    uniqueness constraint on role_external_id).
    756bfbc8
20200717040735_change_aws_roles_role_arn_null.rb 409 Bytes