Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

RFE : Improve secret management doc in OpenShift Pipeline and support Azure KeyVault #201

Open
ezYakaEagle442 opened this issue Jan 9, 2021 · 5 comments

Comments

@ezYakaEagle442
Copy link

ezYakaEagle442 commented Jan 9, 2021

Writing your first OpenShift Pipeline/Tekton, you discover that secrets are declared as string in Tasks params and are displayed in clear text in the ARO console.

Request For Enhancement :

  1. Improve ARO & OpenShift documentation to describe how to limit secret exposure in the Pipeline
  2. Add in the roadmap the integration with Azure KeyVault + the Azure Key Vault Provider for Secrets Store CSI Driver

Note: There is no GitHub Issue page at - https://github.com/openshift/tektoncd-pipeline

See also:

@ezYakaEagle442
Copy link
Author

@amanohar @sakthi-vetrivel

@ezYakaEagle442
Copy link
Author

Now the ARO docs is a pointer to OCP docs, the secret management is a bit described at https://docs.openshift.com/container-platform/4.6/security/container_security/security-deploy.html#security-deploy-secrets_security-deploy

@ezYakaEagle442
Copy link
Author

cc @aramase @ritazh

@ezYakaEagle442
Copy link
Author

@rahulm23 could you please flag this issue to the roadmap ?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
Development

No branches or pull requests

2 participants