External Secrets Operator • Moritz Johner • PlatformCon 2022

Secrets management is a difficult challenge: How do you create, rotate and manage access? And how would you even do that at scale? With External Secrets Operator you can leverage existing solutions like HashiCorp Vault or AWS Secrets Manager that manage secrets for you and integrate them with Kubernetes. Moritz wants to share his insights on how secrets management is done right in a financially regulated environment where you can not take any shortcuts in security.
In this session, attendees will learn how to manage secrets in a GitOps way for self-sufficient teams to make developers, auditors and product managers happy.
Speaker: Moritz Johner, Senior Software Engineer at Form3.
Bio: Moritz is a platform architect and open source maintainer. He has a love-hate relationship with regulated businesses. Currently works @Form3, launching a multi-cloud Kubernetes platform to space.

Пікірлер: 1

  • @lindhe
    @lindhe23 күн бұрын

    Thanks for a great presentation! When creating a secret store that namespace users should not have direct access to, how does that store know the credentials to the upstream vault? If it's storing those credentials in a Secret, I assume the users would be able to read it. So is the service account token (or whatnot) stored inside the secret store object?

Келесі