Application Default Credentials for BigQuery source
Hello Fivetran-Team!
Summary
The BigQuery Activation Source currently authenticates via a downloaded Service Account JSON key (Step 4, "Service Account Key JSON"). Our organization's IT-Security policy prohibits the creation and storage of exportable service account JSON keys for GCP resources. We'd like Fivetran to support Google Application Default Credentials (ADC) as an alternative authentication method for this Source.
Current Behavior
The "Bring your own bucket" GCS storage backend configuration requires uploading a Service Account JSON key (Step 4, "Service Account Key JSON"). There is no other authentication method currently offered for this Source.
Problem
Our IT-Security policy prohibits creating and storing exportable service account JSON keys for GCP resources. This currently blocks us from using BigQuery as an Activation Source.
Requested Feature
Add support for Google Application Default Credentials (ADC) as an authentication method for the BigQuery Activation Source, so customers are not required to generate and upload a static JSON key.
Environment
- Product: Fivetran Activation (reverse ETL)
- Source: Google BigQuery
- Data Processing Location: EU
- Fivetran Processing Cloud Provider: GCP
- GCP Region: europe-west3 (Frankfurt)
- Storage backend: Bring your own bucket (GCS)
With Regards,
Germann Apaev
Please sign in to leave a comment.
Comments
0 comments