GCE Builders should use service account authentication for GS. |
||||||||
Issue descriptionCurrently we are installing our standard .boto file on every builder. However, GCE builders have their own service account based authentication mechanism. This mechanism already works for ChromeOS builds, but service accounts in chrome.bot used for our GCE instances don't have all the permissions needed by our builders.
,
Mar 10 2016
,
Mar 11 2016
I'm attempting the rambi-release (cros254-c2) without a .boto file.
,
Mar 11 2016
We saw more failures last night. Switching back to .boto until I can sort them out. https://uberchromegw.corp.google.com/i/chromeos/builders/rambi-release/builds/635
,
Mar 14 2016
,
Mar 19 2016
,
Apr 26 2016
,
May 10 2016
This issue is a little different now, since we are using ccompute and managing GCE instances with puppet.
,
May 17 2016
Now that IAM is in place, it would be easy to correctly grant the correct permissions to the service account. But... on reflection, we don't want to have two different accounts to manage, so not fixing until after we can get rid of our physical builders. |
||||||||
►
Sign in to add a comment |
||||||||
Comment 1 by dgarr...@chromium.org
, Mar 10 2016