PLAY PODCASTS
HashiCorp Vault for Kubernetes
Episode 117

HashiCorp Vault for Kubernetes

Bret is joined by Rosemary Wang from HashiCorp to show off Vault for Kubernetes, an open source secrets provider.

DevOps and Docker Talk: Cloud Native Interviews and Tooling

November 25, 202256m 59s

Audio is streamed directly from the publisher (media.transistor.fm) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

🙌 The Agentic DevOps Guild has launched! It's a training + community + mentorship program for engineers wanting to learn the latest CI/CD automation and dive into Agentic DevOps. Meetups are happening now, with new course videos dropping every few weeks. Join the Guild and become your team's leader in AI for infrastructure automation https://www.bretfisher.com/theguild 🍾


Bret is joined by Rosemary Wang from HashiCorp to show off Vault for Kubernetes, an an open source secrets provider.

Rosemary is a return guest and does her usual fantastic job at explaining the complex topics around storing secrets, who needs Vault and why, running Vault on Kubernetes, the Vault storage backend and so much more.

Streamed live on YouTube on September 29, 2022. Includes demos.


Unedited live recording of this show on YouTube (Ep #186)


Topics★
Vault website
HashiCorp Cloud
Raft storage for Vault, how Raft works
Example repo: HashiCorp Vault for Development Teams

Rosemary Wang★
Rosemary on Twitter
Rosemary on Linkedin

Join my Community
Best coupons for my Docker and Kubernetes courses
Chat with us and fellow students on our Discord Server DevOps Fans

Homepage bretfisher.com

  • (00:00) - DDT MAIN
  • (00:04) - Intro
  • (03:11) - Bret intro
  • (03:53) - Main show
  • (04:09) - Course updates
  • (04:29) - Introductions
  • (05:32) - Today's Topic
  • (06:41) - Anyone who doesn't need secret management?
  • (09:30) - Elevator pitch for Vault
  • (11:39) - Handling Rotation and Exit Strategies
  • (14:06) - When do I need Vault?
  • (16:52) - Question about Aquilas
  • (17:11) - Vault is open source
  • (19:07) - We ain't got time for that
  • (19:58) - Can I run Vault on Kubernetes?
  • (20:56) - Question: Where are Secrets Stored?
  • (22:16) - Raft all the things
  • (23:36) - Question: Vault and SSL Certificates
  • (24:48) - Question and Demo
  • (25:13) - Demo intro
  • (25:43) - Demo
  • (25:44) - Question about HSMs
  • (26:07) - Question
  • (27:01) - Question about Unsealed Tokens
  • (29:35) - Question
  • (31:59) - Bret's First Question about Toil
  • (38:50) - Question: Password Managers and Vault
  • (42:01) - Question
  • (43:22) - Question
  • (45:55) - Notes about Vault Agent Sidecar and Authentication
  • (47:32) - Bret's Summary
  • (51:05) - Question about Getting Started
  • (52:01) - Starting with Sealed Secrets
  • (54:47) - Wrap up
  • (55:23) - Getting in touch with Rosemary
  • (56:00) - What's next for Rosemary?
  • (56:48) - Outro

You can also support this podcast by subscribing to my YouTube channel and my weekly newsletter at bret.news!

Grab the best coupons for my Docker and Kubernetes courses.
Join my cloud native DevOps community on Discord.
Grab some merch at Bret's Loot Box
Homepage bretfisher.com

Topics

dockercontainersdevopsdevsecopsgitopskubernetesk8sk3sservice meshitsiogoogleazureawsdigitaloceanhashicorpswarmcloudserverssysadmindevelopmentdeveloperssoftwarewebtechtechnologyadminsecuritylearningsoftware developmentdevlifeopen sourceprogrammingCI/CDagileITbret fishersecuritysecure supply chain