Support mTLS in Impersonated Credentials #1
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR adds support for mTLS endpoints in impersonated credentials.
It updates
_mtls_helper.check_use_client_certto respectCLOUDSDK_CONTEXT_AWARE_USE_CLIENT_CERTIFICATE.It also conditionally switches the IAM endpoints in
impersonated_credentials.pybased on this check.Tests were updated to verify the new behavior of
check_use_client_cert.Note: Existing test
TestDecryptPrivateKey.test_successintests/transport/test__mtls_helper.pyis failing due toOpenSSL.crypto.signbeing removed in recent versions of dependencies, which is unrelated to these changes.PR created automatically by Jules for task 8690199261277670952 started by @amtk3