Home / Companies / Octopus Deploy / Blog / Post Details
Content Deep Dive

Generic OpenID Connect accounts

Blog post from Octopus Deploy

Post Details
Company
Date Published
Author
Isaac Calligeros
Word Count
550
Language
English
Hacker News Points
-
Summary

In the upcoming 2025.1 release, Octopus is set to introduce Generic OpenID Connect (OIDC) accounts, enhancing the ability to authenticate with third-party systems that support OAuth 2.0 and JSON Web Tokens (JWTs). This new feature will enable Octopus to act as a client by contributing a JWT as a variable to deployments, providing flexibility in authentication for services like HashiCorp Vault and Google Cloud's Workload Identity Federation. The Generic OIDC accounts allow users to configure specific fields like audience and subject generation, ensuring compatibility with target services. For HashiCorp Vault, this includes setting up JWT configuration to manage secrets securely, whereas for Google Cloud, it involves matching the subject generator and audience with the Workload Identity Federation setup. This innovation facilitates secure access to cloud resources and the management of secrets without relying on static credentials, promising a scalable and secure authentication solution for various integrations. These accounts will soon be available for Octopus Cloud customers, with self-hosted users also gaining access upon the release, offering a significant enhancement to deployment pipelines by supporting flexible and secure OAuth 2.0 JWT flows.