conda-forge / conda-forge/conda-forge.github.io

How to keep (and rotate secrets)

Aperta
#1,219 0 commenti 0 reazioni 0 assegnatari Vedi su GitHub
Lingua principale
JavaScript
Stelle
170
Fork
320
Merge medio
2g 10h
PR unite (30g)
5

Descrizione

Managing our numerous secrets can be quite a chore, requiring manual key rotation and updating. This may get more complex in the future, especially if we move to each feedstock having independent keys scoped to only it's packages. It would be good to figure out a way to manage this, since it will reduce key person risk (since the task will be easier and more welcoming to less knowledgeable users) and other operational risks more broadly.

One potential solution for this is the [hashicorp vault](https://www.vaultproject.io/) and [cloud vault](https://www.hashicorp.com/cloud-platform) products.

This issue is aimed at discussing the problem, potential solutions, and implementation plans.

Guida per i contributori

Apri la guida per i contributori

Valutazione

Questa issue non è ancora stata valutata.

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.