#service-account #gcp #google #env-var

gcp_auth

Google cloud platform (GCP) authentication using default and custom service accounts

34 releases

0.12.2 May 29, 2024
0.11.1 Apr 9, 2024
0.11.0 Mar 14, 2024
0.10.0 Dec 19, 2023
0.1.4 Jul 2, 2020

#9 in Authentication

Download history 53097/week @ 2024-05-19 38641/week @ 2024-05-26 43045/week @ 2024-06-02 53525/week @ 2024-06-09 43945/week @ 2024-06-16 50064/week @ 2024-06-23 35395/week @ 2024-06-30 30447/week @ 2024-07-07 20774/week @ 2024-07-14 22661/week @ 2024-07-21 27538/week @ 2024-07-28 30452/week @ 2024-08-04 42059/week @ 2024-08-11 42932/week @ 2024-08-18 52121/week @ 2024-08-25 38501/week @ 2024-09-01

176,591 downloads per month
Used in 14 crates (12 directly)

MIT license

43KB
775 lines

GCP Auth

Crates.io Documentation MIT licensed

GCP auth provides authentication using service accounts Google Cloud Platform (GCP)

GCP auth is a simple, minimal authentication library for Google Cloud Platform (GCP) providing authentication using service accounts. Once authenticated, the service account can be used to acquire bearer tokens for use in authenticating against GCP services.

The library supports the following methods of retrieving tokens in the listed priority order:

  1. Reading custom service account credentials from the path pointed to by the GOOGLE_APPLICATION_CREDENTIALS environment variable. Alternatively, custom service account credentials can be read from a JSON file or string.
  2. Look for credentials in .config/gcloud/application_default_credentials.json; if found, use these credentials to request refresh tokens. This file can be created by invoking gcloud auth application-default login.
  3. Use the default service account by retrieving a token from the metadata server.
  4. Retrieving a token from the gcloud CLI tool, if it is available on the PATH.

For more detailed information and examples, see the docs.

This crate does not currently support Windows.

Simple usage

The default way to use this library is to get instantiate an AuthenticationManager. It will find the appropriate authentication method and use it to retrieve tokens.

use gcp_auth::AuthenticationManager;

let authentication_manager = AuthenticationManager::new().await?;
let scopes = &["https://www.googleapis.com/auth/cloud-platform"];
let token = authentication_manager.get_token(scopes).await?;

License

Parts of the implementation have been sourced from yup-oauth2.

Licensed under MIT license.

Dependencies

~17–28MB
~530K SLoC