Base64 is not encryption A better story for Kubernetes Secrets

Поделиться
HTML-код
  • Опубликовано: 4 окт 2024

Комментарии • 5

  • @connorbates5630
    @connorbates5630 5 лет назад +3

    Thanks a lot for this video. The content of it is extremely helpful.

  • @ankurchakraborty6017
    @ankurchakraborty6017 4 года назад

    Super....very well explained.

  • @johndurrett3573
    @johndurrett3573 Год назад

    There is still a big pink elephant in the room. Yes perhaps you have finally encrypted the secrets storage system...but your application pods need those secrets to communicate with each other..and outside the cluster....and where are they going to store those secrets? locally? or what method to require application containers always make secure TLS calls to secrets server to make their outside calls.. of course thats at the very least going to be stored in memory for a moment..are we encrypting memory? another vault system on the pods/containers?? always more questions.

  • @Fog93k3fawdv30
    @Fog93k3fawdv30 4 года назад

    i am still prefer bitnami sealed secrets

    • @luizhpriotto
      @luizhpriotto 3 года назад

      Do you know whether bitnami seal the secrets inside ETCD?