you can also store creds in a secret, if you need static creds that can be rotated without restarting.
m
millions-france-61475
06/09/2025, 8:18 PM
Thanks. Is the IAM auth typically done using an instance profile? We have IRSA but I don't think that will work because the backup runs on the host not inside kubernetes right?
c
creamy-pencil-82913
06/09/2025, 8:19 PM
yes it would need to be an instance profile, not a IRSA pod role as RKE2 runs on the host itself, not within the cluster. It IS the cluster.