conda-forge / conda-forge/conda-forge.github.io

How to keep (and rotate secrets)

Abierto
#1,219 0 comentarios 0 reacciones 0 asignados Ver en GitHub
Lenguaje dominante
JavaScript
Estrellas
170
Forks
320
Merge medio
2 d 10 h
PR fusionados (30 d)
5

Descripción

Managing our numerous secrets can be quite a chore, requiring manual key rotation and updating. This may get more complex in the future, especially if we move to each feedstock having independent keys scoped to only it's packages. It would be good to figure out a way to manage this, since it will reduce key person risk (since the task will be easier and more welcoming to less knowledgeable users) and other operational risks more broadly.

One potential solution for this is the [hashicorp vault](https://www.vaultproject.io/) and [cloud vault](https://www.hashicorp.com/cloud-platform) products.

This issue is aimed at discussing the problem, potential solutions, and implementation plans.

Guía de contribución

Abrir la guía de contribución

Evaluación

Este issue todavía no se ha evaluado.

Recibe los nuevos issues en tu correo

Un resumen breve de issues de GitHub para principiantes.