FluentBit + OpenSearch in Kubernetes with Pod's identity?

Versions (relevant - OpenSearch/Dashboard/Server OS/Browser):

OpenSearch 2.2.1
FluentBit 2.2.1

Describe the issue:

I have OpenSearch setup with OIDC integrated running on Kubernetes. I’m using the logstash demo user for fluentbit, which is running in the same cluster. Is it possible to configure fluentbit to use the pod’s service account token when communicating with the opensearch cluster? Can the cluster support multiple oidc providers?

Configuration:

Relevant Logs or Screenshots:

Hi @mlbiam,

No, the service account belongs to Kubernetes and the application is unaware of it.

Best,
mj