dbt-labs/dbt-core
[Adapter Auth] BigQuery Workload Identity Federation (WIF) / External OAuth
已關閉
#14,545 建立於 2026年4月23日
Epicbigqueryhelp wantedtriage
倉庫指標
- 星標
- (7,989 顆星)
- PR 合併指標
- (平均合併 2天 13小時) (30 天內合併 46 個 PR)
描述
Overview
Add support for GCP Workload Identity Federation (WIF) in the dbt-fusion BigQuery adapter.
WIF allows BigQuery authentication to be delegated to an external OIDC provider, enabling keyless auth flows commonly used in CI/CD environments and multi-cloud setups. This is a significant auth method for large BigQuery customers and is blocking Fusion adoption for some of them.
What needs to be implemented
The BigQuery adapter should support the external_oauth / WIF credential path. The reference implementation in dbt-adapters can be found here:
Reference
- Upstream tracking issue: dbt-labs/fs#1958
- Auth methods guide (internal): https://www.notion.so/dbtlabs/Adapters-Auth-Methods-Front-End-Team-Guide-1d0bb38ebda780f8a597e80466f8f129?pvs=4#1d0bb38ebda780cc8c1bd35a11696995