Listen "Psst... Secrets Handling for Cloud-Native Apps - Part 1"
Episode Synopsis
Support Mobycast-> https://glow.fm/mobycast <-In this episode, we cover the following topics:What is secrets management and why we need it for our cloud-native applications.Guidelines for best practices when handling secrets.We walkthrough a simple, roll-your-own approach to secrets management using encryption (KMS) and an object store (S3).Although this is a simple technique, it does provide a very secure (and auditable) approach to secrets handling.But, for most situtations, you'll want to leverage an off-the-shelf secrets management solution. We discuss 3 popular choices, including Hashicorp Vault, AWS Systems Manager Parameter Store and Amazon Secrets Manager.What are the features you should expect from a secrets management solution.We take a closer look at Vault, Parameter Store and Secrets Manager, and discuss the features that each provides.We finish with some guidance on how to make the right choice of secrets management solution for your applications.LinksSecrets Management for Cloud-Native ApplicationsVault - Unlocking the Cloud Operating Model: SecurityAWS Systems Manager Parameter StoreHow AWS Systems Manager Parameter Store Uses AWS KMSIntroducing AWS Secrets ManagerAWS Secrets ManagerHow AWS Secrets Manager Uses AWS KMSRotating Your AWS Secrets Manager SecretsTutorial: Specifying Sensitive Data Using Secrets Manager SecretsAWS Secrets Manager now supports VPC endpoint policiesHow to Manage Secrets for Amazon EC2 Container Service–Based Applications by Using Amazon S3 and DockerEnd SongWarming Trend by AphreaqMore InfoFor a full transcription of this episode, please visit the episode webpage.We'd love to hear from you! You can reach us at:Web: https://mobycast.fmVoicemail: 844-818-0993Email: [email protected]: https://twitter.com/hashtag/mobycastReddit: https://reddit.com/r/mobycast