Skip to content

Conversation

ferantivero
Copy link
Contributor

WHY

we wanted to replace system by user assigned managed identities at the ai foundry project level for the sake of bcdr. In case of an incident system managed identities are going away with the resources. On the other hand, user assigned identities are not being attached to a particular resource life cycle helping to recover easily from an incident rather than system.

WHAT Changed

  • replace ai foundry project system by user assigned identity
  • replace role assignments to rbac the user assigned instead

TEST

TBD

@JeffreyMawuko
Copy link

JeffreyMawuko commented Sep 17, 2025

@ferantivero Awesome, I believe by mmoving from system-assigned to user-assigned managed identities for Aifoundry project level, this kinda ensures the identity and access model is decoupled from the lifecycle of individual resources. I also see this change enabling faster recovery, consistent permissions across environments from experience, and can also reduced operational risk during a disaster recovery scenario or processes. I can recommend this is automated...

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants