Psst... Secrets Handling for Cloud-Native Apps - Part 1 - podcast episode cover

Psst... Secrets Handling for Cloud-Native Apps - Part 1

Jan 01, 202056 minEp. 93
--:--
--:--
Download Metacast podcast app
Listen to this episode in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episode description

Support Mobycast
-> https://glow.fm/mobycast <-

In this episode, we cover the following topics:

  • What is secrets management and why we need it for our cloud-native applications.
  • Guidelines for best practices when handling secrets.
  • We walkthrough a simple, roll-your-own approach to secrets management using encryption (KMS) and an object store (S3).
    • Although this is a simple technique, it does provide a very secure (and auditable) approach to secrets handling.
  • But, for most situtations, you'll want to leverage an off-the-shelf secrets management solution. We discuss 3 popular choices, including Hashicorp Vault, AWS Systems Manager Parameter Store and Amazon Secrets Manager.
  • What are the features you should expect from a secrets management solution.
  • We take a closer look at Vault, Parameter Store and Secrets Manager, and discuss the features that each provides.
  • We finish with some guidance on how to make the right choice of secrets management solution for your applications.

Links


End Song
Warming Trend by Aphreaq

More Info


For a full transcription of this episode, please visit the episode webpage.

We'd love to hear from you! You can reach us at:

For the best experience, listen in Metacast app for iOS or Android