[EKS] [addon]: Add-on for Secret Store CSI Driver
- Dominant language
- Shell
- Stars
- 5.4k
- Forks
- 334
- PR merge metrics
- No merged PRs in 30d
Description
### Community Note
* Please vote on this issue by adding a 👍 [reaction](https://blog.github.com/2016-03-10-add-reactions-to-pull-requests-issues-and-comments/) to the original issue to help the community and maintainers prioritize this request
* Please do not leave "+1" or "me too" comments, they generate extra noise for issue followers and do not help prioritize the request
* If you are interested in working on this issue or have submitted a pull request, please leave a comment
**Tell us about your request**
I'd like to ask if there's a current development for an add-on for Secret Store CSI Driver. This add-on should be able to add to the cluster through the Amazon EKS page > Add-on > Get more add-ons
**Which service(s) is this request for?**
EKS
**Tell us about the problem you're trying to solve. What are you trying to do, and why is it hard?**
We're currently using the manual setup for the Secret Store CSI Driver to fetch all our secrets from the Secrets Manager. Since our EKS cluster is private (no internet access):
- The images for the Secret Store CSI Driver have to be pulled down and saved to our local ECR
- In addition to this, the images could be another security risk
- Finally, the Secrets Store CSI Driver was previously installed with Helm (via internet) but we have since closed off the route, which means the additional difficulty in updating the Helm chart itself
Having an add-on that can be updated through the UI simplifies the whole process.
**Are you currently working around this issue?**
Currently we're just using the Secret Store CSI driver installed through Helm chart.
**Additional context**
None
**Attachments**
None
Contributor guide
Research direction
Start by reviewing the current Secret Store CSI Driver Helm installation and the EKS Add-ons flow described in the request. The work would be complete when the driver is available through EKS > Add-on > Get more add-ons and can be updated there without internet-dependent Helm setup.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- aws, helm, kubernetes
- Domain
- cloud, devops, infrastructure
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 28/100