Introduction to Azure DevOps Workload identity federation (OIDC) with Terraform - Azure DevOps Blog

Now with Workload identity federation we remove that limitation and enable you to use short-lived tokens for authenticating to Azure. This significantly improves your security posture and removes the need to figure out how to share and rotate secrets.
Workload identity federation is an OpenID Connect implementation for Azure DevOps that allow you to use short-lived credential free authentication to Azure without the need to provision self-hosted agents with managed identity.
Read at Azure DevOps Blog