dbt-labs/dbt-core

[Adapter Auth] BigQuery Workload Identity Federation (WIF) / External OAuth

クローズ

#14,545 opened on 2026/04/23

 (6 件のコメント) (2 件のリアクション) (2 人の担当者)Python (1,403 件のフォーク)batch import
Epicbigqueryhelp wantedtriage

Repository metrics

Stars
 (7,989 個のスター)
PR merge metrics
 (平均マージ 2d 13h) (30d で 46 merged PRs)

説明

Overview

Add support for GCP Workload Identity Federation (WIF) in the dbt-fusion BigQuery adapter.

WIF allows BigQuery authentication to be delegated to an external OIDC provider, enabling keyless auth flows commonly used in CI/CD environments and multi-cloud setups. This is a significant auth method for large BigQuery customers and is blocking Fusion adoption for some of them.

What needs to be implemented

The BigQuery adapter should support the external_oauth / WIF credential path. The reference implementation in dbt-adapters can be found here:

https://github.com/dbt-labs/dbt-adapters/blob/1f3f529dc713f493a74514feb3ab239ed7fc7cf6/dbt-bigquery/src/dbt/adapters/bigquery/credentials.py#L254

Reference

コントリビューターガイド