Enviar búsqueda
Cargar
Securing K8s with Vault
•
Descargar como PPTX, PDF
•
0 recomendaciones
•
84 vistas
Título mejorado por IA
Juliano P. Alves
Seguir
Presentation on TDC 2018: Protecting your K8s with Valut
Leer menos
Leer más
Software
Vista de diapositivas
Denunciar
Compartir
Vista de diapositivas
Denunciar
Compartir
1 de 21
Descargar ahora
Recomendados
Open shift enterprise 3.1 paas on kubernetes
Open shift enterprise 3.1 paas on kubernetes
Samuel Terburg
Kubernetes_Webinar_Slide_Deck.pdf
Kubernetes_Webinar_Slide_Deck.pdf
AuliaFebrian2
JavaOne 2016: Kubernetes introduction for Java Developers
JavaOne 2016: Kubernetes introduction for Java Developers
Rafael Benevides
Kubernetes for Java Developers
Kubernetes for Java Developers
Red Hat Developers
TDC2018FLN | Trilha Containers - Kubernetes para usuarios Docker.
TDC2018FLN | Trilha Containers - Kubernetes para usuarios Docker.
tdc-globalcode
給 RD 的 Kubernetes 初體驗 (EKS version)
給 RD 的 Kubernetes 初體驗 (EKS version)
William Yeh
Gatekeeper: API gateway
Gatekeeper: API gateway
ChengHui Weng
Javaone kubernetesjenkins
Javaone kubernetesjenkins
Pravat Bhusan Parida
Recomendados
Open shift enterprise 3.1 paas on kubernetes
Open shift enterprise 3.1 paas on kubernetes
Samuel Terburg
Kubernetes_Webinar_Slide_Deck.pdf
Kubernetes_Webinar_Slide_Deck.pdf
AuliaFebrian2
JavaOne 2016: Kubernetes introduction for Java Developers
JavaOne 2016: Kubernetes introduction for Java Developers
Rafael Benevides
Kubernetes for Java Developers
Kubernetes for Java Developers
Red Hat Developers
TDC2018FLN | Trilha Containers - Kubernetes para usuarios Docker.
TDC2018FLN | Trilha Containers - Kubernetes para usuarios Docker.
tdc-globalcode
給 RD 的 Kubernetes 初體驗 (EKS version)
給 RD 的 Kubernetes 初體驗 (EKS version)
William Yeh
Gatekeeper: API gateway
Gatekeeper: API gateway
ChengHui Weng
Javaone kubernetesjenkins
Javaone kubernetesjenkins
Pravat Bhusan Parida
Microservices with Docker, Kubernetes, and Jenkins
Microservices with Docker, Kubernetes, and Jenkins
Red Hat Developers
Microservices with Kubernetes, Docker, and Jenkins
Microservices with Kubernetes, Docker, and Jenkins
Rafael Benevides
Don't Deploy Into the Dark: DORA Metrics for your K8s GitOps Deployments
Don't Deploy Into the Dark: DORA Metrics for your K8s GitOps Deployments
Andreas Grabner
Sharing secret keys in Docker containers and K8s
Sharing secret keys in Docker containers and K8s
Jose Manuel Ortega Candel
Java one kubernetes, jenkins and microservices
Java one kubernetes, jenkins and microservices
Christian Posta
Forced Evolution: Shopify's Journey to Kubernetes
Forced Evolution: Shopify's Journey to Kubernetes
C4Media
CI/CD Across Multiple Environments
CI/CD Across Multiple Environments
Karl Isenberg
Kubernetes Introduction
Kubernetes Introduction
Red Hat Developers
Developing Serverless Applications on Kubernetes with Knative
Developing Serverless Applications on Kubernetes with Knative
VMware Tanzu
Build an AI/ML-driven image archive processing workflow: Image archive, analy...
Build an AI/ML-driven image archive processing workflow: Image archive, analy...
wesley chun
Kubernetes workshop -_the_basics
Kubernetes workshop -_the_basics
Sjuul Janssen
What is Kubernetes?
What is Kubernetes?
Artur Aukhatov
Kubernetes - training micro-dragons without getting burnt
Kubernetes - training micro-dragons without getting burnt
Amir Moghimi
Use GitLab with Chaos Engineering to Harden your Applications + OpenEBS 1.3 ...
Use GitLab with Chaos Engineering to Harden your Applications + OpenEBS 1.3 ...
MayaData Inc
GitOps & the deployment branching models - DevOps D-day Marseille 2021
GitOps & the deployment branching models - DevOps D-day Marseille 2021
SoKube
Docker on docker leveraging kubernetes in docker ee
Docker on docker leveraging kubernetes in docker ee
Docker, Inc.
KNATIVE - DEPLOY, AND MANAGE MODERN CONTAINER-BASED SERVERLESS WORKLOADS
KNATIVE - DEPLOY, AND MANAGE MODERN CONTAINER-BASED SERVERLESS WORKLOADS
Elad Hirsch
[DevDay 2017] OpenShift Enterprise - Speaker: Linh Do - DevOps Engineer at Ax...
[DevDay 2017] OpenShift Enterprise - Speaker: Linh Do - DevOps Engineer at Ax...
DevDay.org
Operator SDK for K8s using Go
Operator SDK for K8s using Go
CloudOps2005
給 RD 的 Kubernetes 初體驗
給 RD 的 Kubernetes 初體驗
William Yeh
AWS Firehose e a arte de acumular dados sem fazer nada
AWS Firehose e a arte de acumular dados sem fazer nada
Juliano P. Alves
A Practical Theory of Language-Integrated Query with Quill
A Practical Theory of Language-Integrated Query with Quill
Juliano P. Alves
Más contenido relacionado
Similar a Securing K8s with Vault
Microservices with Docker, Kubernetes, and Jenkins
Microservices with Docker, Kubernetes, and Jenkins
Red Hat Developers
Microservices with Kubernetes, Docker, and Jenkins
Microservices with Kubernetes, Docker, and Jenkins
Rafael Benevides
Don't Deploy Into the Dark: DORA Metrics for your K8s GitOps Deployments
Don't Deploy Into the Dark: DORA Metrics for your K8s GitOps Deployments
Andreas Grabner
Sharing secret keys in Docker containers and K8s
Sharing secret keys in Docker containers and K8s
Jose Manuel Ortega Candel
Java one kubernetes, jenkins and microservices
Java one kubernetes, jenkins and microservices
Christian Posta
Forced Evolution: Shopify's Journey to Kubernetes
Forced Evolution: Shopify's Journey to Kubernetes
C4Media
CI/CD Across Multiple Environments
CI/CD Across Multiple Environments
Karl Isenberg
Kubernetes Introduction
Kubernetes Introduction
Red Hat Developers
Developing Serverless Applications on Kubernetes with Knative
Developing Serverless Applications on Kubernetes with Knative
VMware Tanzu
Build an AI/ML-driven image archive processing workflow: Image archive, analy...
Build an AI/ML-driven image archive processing workflow: Image archive, analy...
wesley chun
Kubernetes workshop -_the_basics
Kubernetes workshop -_the_basics
Sjuul Janssen
What is Kubernetes?
What is Kubernetes?
Artur Aukhatov
Kubernetes - training micro-dragons without getting burnt
Kubernetes - training micro-dragons without getting burnt
Amir Moghimi
Use GitLab with Chaos Engineering to Harden your Applications + OpenEBS 1.3 ...
Use GitLab with Chaos Engineering to Harden your Applications + OpenEBS 1.3 ...
MayaData Inc
GitOps & the deployment branching models - DevOps D-day Marseille 2021
GitOps & the deployment branching models - DevOps D-day Marseille 2021
SoKube
Docker on docker leveraging kubernetes in docker ee
Docker on docker leveraging kubernetes in docker ee
Docker, Inc.
KNATIVE - DEPLOY, AND MANAGE MODERN CONTAINER-BASED SERVERLESS WORKLOADS
KNATIVE - DEPLOY, AND MANAGE MODERN CONTAINER-BASED SERVERLESS WORKLOADS
Elad Hirsch
[DevDay 2017] OpenShift Enterprise - Speaker: Linh Do - DevOps Engineer at Ax...
[DevDay 2017] OpenShift Enterprise - Speaker: Linh Do - DevOps Engineer at Ax...
DevDay.org
Operator SDK for K8s using Go
Operator SDK for K8s using Go
CloudOps2005
給 RD 的 Kubernetes 初體驗
給 RD 的 Kubernetes 初體驗
William Yeh
Similar a Securing K8s with Vault
(20)
Microservices with Docker, Kubernetes, and Jenkins
Microservices with Docker, Kubernetes, and Jenkins
Microservices with Kubernetes, Docker, and Jenkins
Microservices with Kubernetes, Docker, and Jenkins
Don't Deploy Into the Dark: DORA Metrics for your K8s GitOps Deployments
Don't Deploy Into the Dark: DORA Metrics for your K8s GitOps Deployments
Sharing secret keys in Docker containers and K8s
Sharing secret keys in Docker containers and K8s
Java one kubernetes, jenkins and microservices
Java one kubernetes, jenkins and microservices
Forced Evolution: Shopify's Journey to Kubernetes
Forced Evolution: Shopify's Journey to Kubernetes
CI/CD Across Multiple Environments
CI/CD Across Multiple Environments
Kubernetes Introduction
Kubernetes Introduction
Developing Serverless Applications on Kubernetes with Knative
Developing Serverless Applications on Kubernetes with Knative
Build an AI/ML-driven image archive processing workflow: Image archive, analy...
Build an AI/ML-driven image archive processing workflow: Image archive, analy...
Kubernetes workshop -_the_basics
Kubernetes workshop -_the_basics
What is Kubernetes?
What is Kubernetes?
Kubernetes - training micro-dragons without getting burnt
Kubernetes - training micro-dragons without getting burnt
Use GitLab with Chaos Engineering to Harden your Applications + OpenEBS 1.3 ...
Use GitLab with Chaos Engineering to Harden your Applications + OpenEBS 1.3 ...
GitOps & the deployment branching models - DevOps D-day Marseille 2021
GitOps & the deployment branching models - DevOps D-day Marseille 2021
Docker on docker leveraging kubernetes in docker ee
Docker on docker leveraging kubernetes in docker ee
KNATIVE - DEPLOY, AND MANAGE MODERN CONTAINER-BASED SERVERLESS WORKLOADS
KNATIVE - DEPLOY, AND MANAGE MODERN CONTAINER-BASED SERVERLESS WORKLOADS
[DevDay 2017] OpenShift Enterprise - Speaker: Linh Do - DevOps Engineer at Ax...
[DevDay 2017] OpenShift Enterprise - Speaker: Linh Do - DevOps Engineer at Ax...
Operator SDK for K8s using Go
Operator SDK for K8s using Go
給 RD 的 Kubernetes 初體驗
給 RD 的 Kubernetes 初體驗
Más de Juliano P. Alves
AWS Firehose e a arte de acumular dados sem fazer nada
AWS Firehose e a arte de acumular dados sem fazer nada
Juliano P. Alves
A Practical Theory of Language-Integrated Query with Quill
A Practical Theory of Language-Integrated Query with Quill
Juliano P. Alves
Usando containers para criar uma arquitetura de microservices
Usando containers para criar uma arquitetura de microservices
Juliano P. Alves
Agile brazil - Divertir para Motivar
Agile brazil - Divertir para Motivar
Juliano P. Alves
Contemple o poder de thor
Contemple o poder de thor
Juliano P. Alves
Divertir para motivar TDC2014
Divertir para motivar TDC2014
Juliano P. Alves
Evoluindo o Desenvolvimento Web: Criando Single Page Applications
Evoluindo o Desenvolvimento Web: Criando Single Page Applications
Juliano P. Alves
Você não precisa de um banco de dados
Você não precisa de um banco de dados
Juliano P. Alves
Melhorando seus testes com Specs2
Melhorando seus testes com Specs2
Juliano P. Alves
Más de Juliano P. Alves
(9)
AWS Firehose e a arte de acumular dados sem fazer nada
AWS Firehose e a arte de acumular dados sem fazer nada
A Practical Theory of Language-Integrated Query with Quill
A Practical Theory of Language-Integrated Query with Quill
Usando containers para criar uma arquitetura de microservices
Usando containers para criar uma arquitetura de microservices
Agile brazil - Divertir para Motivar
Agile brazil - Divertir para Motivar
Contemple o poder de thor
Contemple o poder de thor
Divertir para motivar TDC2014
Divertir para motivar TDC2014
Evoluindo o Desenvolvimento Web: Criando Single Page Applications
Evoluindo o Desenvolvimento Web: Criando Single Page Applications
Você não precisa de um banco de dados
Você não precisa de um banco de dados
Melhorando seus testes com Specs2
Melhorando seus testes com Specs2
Último
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Steffen Staab
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
MyIntelliSource, Inc.
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
kalichargn70th171
Exploring iOS App Development: Simplifying the Process
Exploring iOS App Development: Simplifying the Process
Evangelist Apps https://twitter.com/EvangelistSW/
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
panagenda
CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
9953056974 Low Rate Call Girls In Saket, Delhi NCR
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
kalichargn70th171
why an Opensea Clone Script might be your perfect match.pdf
why an Opensea Clone Script might be your perfect match.pdf
joe51371421
Test Automation Strategy for Frontend and Backend
Test Automation Strategy for Frontend and Backend
Arshad QA
Hand gesture recognition PROJECT PPT.pptx
Hand gesture recognition PROJECT PPT.pptx
bodapatigopi8531
Salesforce Certified Field Service Consultant
Salesforce Certified Field Service Consultant
AxelRicardoTrocheRiq
Unlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language Models
aagamshah0812
How To Troubleshoot Collaboration Apps for the Modern Connected Worker
How To Troubleshoot Collaboration Apps for the Modern Connected Worker
ThousandEyes
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
kellynguyen01
Diamond Application Development Crafting Solutions with Precision
Diamond Application Development Crafting Solutions with Precision
SolGuruz
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Alberto González Trastoy
TECUNIQUE: Success Stories: IT Service provider
TECUNIQUE: Success Stories: IT Service provider
mohitmore19
Clustering techniques data mining book ....
Clustering techniques data mining book ....
ShaimaaMohamedGalal
Optimizing AI for immediate response in Smart CCTV
Optimizing AI for immediate response in Smart CCTV
shikhaohhpro
Software Quality Assurance Interview Questions
Software Quality Assurance Interview Questions
Arshad QA
Último
(20)
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
Steps To Getting Up And Running Quickly With MyTimeClock Employee Scheduling ...
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
Exploring iOS App Development: Simplifying the Process
Exploring iOS App Development: Simplifying the Process
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
why an Opensea Clone Script might be your perfect match.pdf
why an Opensea Clone Script might be your perfect match.pdf
Test Automation Strategy for Frontend and Backend
Test Automation Strategy for Frontend and Backend
Hand gesture recognition PROJECT PPT.pptx
Hand gesture recognition PROJECT PPT.pptx
Salesforce Certified Field Service Consultant
Salesforce Certified Field Service Consultant
Unlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language Models
How To Troubleshoot Collaboration Apps for the Modern Connected Worker
How To Troubleshoot Collaboration Apps for the Modern Connected Worker
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Short Story: Unveiling the Reasoning Abilities of Large Language Models by Ke...
Diamond Application Development Crafting Solutions with Precision
Diamond Application Development Crafting Solutions with Precision
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
Unveiling the Tech Salsa of LAMs with Janus in Real-Time Applications
TECUNIQUE: Success Stories: IT Service provider
TECUNIQUE: Success Stories: IT Service provider
Clustering techniques data mining book ....
Clustering techniques data mining book ....
Optimizing AI for immediate response in Smart CCTV
Optimizing AI for immediate response in Smart CCTV
Software Quality Assurance Interview Questions
Software Quality Assurance Interview Questions
Securing K8s with Vault
1.
Protegendo seu K8s
com Vault Juliano Alves @vonjuliano
2.
● Formado em
engenharia de Software pela PUC/SP ● Java / Scala / Clojure / Ruby / C# / Python ● Palestrante em eventos como Agile Brazil, TDC, .Net Architects, DevDay ● Open Source S2
3.
4.
5.
6.
- Variáveis de
ambiente - K8s secrets - Plain text
7.
Plain text
8.
9.
● Secure Secret
Storage ● Dynamic Secrets ● Data Encryption ● Leasing and Renewal ● Revocation Features
10.
11.
Database
12.
K8s
13.
--- apiVersion:extensions/v1beta1 kind:Deployment metadata: name:my-deploy namespace:myNamespace spec: replicas:1 template: metadata: labels: app:my-app spec: containers: - name:my-container --- apiVersion:v1 kind:ServiceAccount metadata: name:myServiceAccount namespace:myNamespace
14.
--- apiVersion:extensions/v1beta1 kind:Deployment metadata: name:my-deploy namespace:myNamespace spec: replicas:1 template: metadata: labels: app:my-app spec: serviceAccountName:myServiceAccount containers: - name:my-container --- apiVersion:v1 kind:ServiceAccount metadata: name:myServiceAccount namespace:myNamespace
15.
--- apiVersion:extensions/v1beta1 kind:Deployment metadata: name:my-deploy namespace:myNamespace spec: replicas:1 template: metadata: labels: app:my-app spec: volumes: -name:database-secret emptyDir:{} serviceAccountName:myServiceAccount containers: - name:my-container volumeMounts: -name:database-secret mountPath:/etc/database-creds --- apiVersion:v1 kind:ServiceAccount metadata: name:myServiceAccount namespace:myNamespace
16.
--- apiVersion:extensions/v1beta1 kind:Deployment metadata: name:my-deploy namespace:myNamespace spec: replicas:1 template: metadata: labels: app:my-app spec: volumes: -name:database-secret emptyDir:{} -name:database-template configMap: name:my-template serviceAccountName:myServiceAccount containers: - name:my-container volumeMounts: -name:database-secret mountPath:/etc/database-creds --- apiVersion:v1 kind:ServiceAccount metadata: name:myServiceAccount namespace:myNamespace --- apiVersion:v1 kind:ConfigMap metadata: name:my-template namespace:myNamespaces data: database.yml.in:| username:{{ .Username}} password:{{
.Password}}
17.
Building
18.
Deployment
19.
20.
Perguntas?
21.
Protegendo seu K8s
com Vault Juliano Alves @vonjuliano https://www.uswitch.com/vacancies/ OBRIGADO!
Descargar ahora