Secrets & Automation

Proposed By
Satheesan Nayar
Day
Thursday, December 14
Time
1:15 – 2:00 p.m.
Location
LK102
Number of Attendees
65
Where will the conversation continue?
Slack and email
Summary
How to manage and use secrets securely in the context of automation ? Let's discuss ideas
Notes

Question about the availability of vault to Stanford community and what software is used to implement it.

Xeushan - Talked about the availability of Vault implementation within Stanford

Richard Guo - CTSC uses AWS secret store  AppRole token. Applications use that to fetch secrets from vault

Karl Kornel - Research computing uses vault to create one time, short lived token when they spin up services

CTSC uses Vault to create short lived token for accessing AWS CLI

 

File Attachments
Year
2023