Can the Managed Identity be used with Azure-Redhat-OpenShift Cluster to collect Prometheus Metrics?

slsbla 11 Reputation points
2022-12-08T16:26:38.077+00:00

Hello,
I want to configure an ARO cluster that is ARC-Enabled to remote-write Prometheus metrics to Azure Monitoring Managed Prometheus .
I have created an Azure Monitoring Workspace and Added a Managed Identity to the ARO Arc enabled Resource group. while granting Roles and permission, I noticed that the documentation only refers to AKS clusters (see : https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/prometheus-remote-write-managed-identity?source=recommendations#grant-aks-cluster-access-to-the-identity).

Even though, the Artical is mentioning that both AKS and Azure-Arc are supported (see: https://learn.microsoft.com/en-us/azure/azure-monitor/essentials/prometheus-remote-write-managed-identity?source=recommendations#cluster-configurations) I m not able to find a documentation for that , the Only thing that I found is regarding the Active Directory method.

Can you share with me the proer way to achieve that (connecting a Prometheus Server from an Arc-enabled (ARO) cluster to the Azure Managed Prometheus ) ?
Thank you.

Azure Monitor
Azure Monitor
An Azure service that is used to collect, analyze, and act on telemetry data from Azure and on-premises environments.
3,584 questions
Azure Red Hat OpenShift
Azure Red Hat OpenShift
An Azure service that provides a flexible, self-service deployment of fully managed OpenShift clusters.
91 questions
Azure Arc
Azure Arc
A Microsoft cloud service that enables deployment of Azure services across hybrid and multicloud environments.
505 questions
{count} votes

1 answer

Sort by: Most helpful
  1. LISBOA-4826 240 Reputation points
    2025-04-15T19:44:56.37+00:00

    Hi slsbla

    Welcome to the Microsoft Q&A Platform! Thank you for asking your question here.

    I understand that you are looking for the confirmation, if ARO has Manage Identity.

    We had the confirmation and you can read in details here: https://www.redhat.com/en/blog/managed-identity-workload-identity-azure#:~:text=We%20are%20pleased%20to%20announce,Red%20Hat%20OpenShift%20(ARO).

    The entire process is detailed in the documentation.

    Regarding the ARC-Enabled - search for ARO on this link - https://learn.microsoft.com/en-us/azure/azure-monitor/containers/kubernetes-monitoring-enable?tabs=cli

    Please do not forget to "Accept the answer” and “up-vote” wherever the information provided helps you, this can be beneficial to other community members.

    If you have any other questions or are still running into more issues, let me know in the "comments" and I would be happy to help you.

    Thank You.

    Lisboa

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.