cover of episode HashiCorp Vault for Kubernetes

HashiCorp Vault for Kubernetes

2022/11/25
logo of podcast DevOps and Docker Talk: Cloud Native Interviews and Tooling

DevOps and Docker Talk: Cloud Native Interviews and Tooling

Frequently requested episodes will be transcribed first

Shownotes Transcript

Bret is joined by Rosemary Wang from HashiCorp to show off Vault for Kubernetes, an an open source secrets provider.

Rosemary is a return guest and does her usual fantastic job at explaining the complex topics around storing secrets, who needs Vault and why, running Vault on Kubernetes, the Vault storage backend and so much more.

Streamed live on YouTube on September 29, 2022. Includes demos.

Unedited live recording) of this show on YouTube (Ep #186)

Topics★Vault website)HashiCorp Cloud)Raft storage for Vault), how Raft worksExample repo: HashiCorp Vault for Development Teams)

Rosemary Wang★Rosemary on Twitter)Rosemary on Linkedin)

Join my Community★Best coupons for my Docker and Kubernetes courses)Chat with us and fellow students on our Discord Server DevOps Fans)

Homepage bretfisher.com)

  • (00:00) - DDT MAIN

  • (00:04) - Intro

  • (00:54) - Bret intro

  • (01:36) - Main show

  • (01:52) - Course updates

  • (02:12) - Introductions

  • (03:15) - Today's Topic

  • (04:24) - Anyone who doesn't need secret management?

  • (07:13) - Elevator pitch for Vault

  • (09:22) - Handling Rotation and Exit Strategies

  • (11:49) - When do I need Vault?

  • (14:35) - Question about Aquilas

  • (14:54) - Vault is open source

  • (16:50) - We ain't got time for that

  • (17:41) - Can I run Vault on Kubernetes?

  • (18:39) - Question: Where are Secrets Stored?

  • (19:59) - Raft all the things

  • (21:19) - Question: Vault and SSL Certificates

  • (22:31) - Question and Demo

  • (22:56) - Demo intro

  • (23:26) - Demo

  • (23:27) - Question about HSMs

  • (23:50) - Question

  • (24:44) - Question about Unsealed Tokens

  • (27:18) - Question

  • (29:42) - Bret's First Question about Toil

  • (36:33) - Question: Password Managers and Vault

  • (39:44) - Question

  • (41:05) - Question

  • (43:38) - Notes about Vault Agent Sidecar and Authentication

  • (45:15) - Bret's Summary

  • (48:48) - Question about Getting Started

  • (49:44) - Starting with Sealed Secrets

  • (52:30) - Wrap up

  • (53:06) - Getting in touch with Rosemary

  • (53:43) - What's next for Rosemary?

  • (54:31) - Outro

You can also support my free material by subscribing to my YouTube) channel and my weekly newsletter at bret.news)!

Grab the best coupons for my Docker and Kubernetes courses)**.Join my cloud native DevOps community on Discord).**Grab some merch at Bret's Loot Box)Homepage bretfisher.com)