brave-ambulance-98491
03/09/2020, 2:29 PMkubernetes.Provider
with an inline kubeconfig
string, the string (with cluster access tokens) isn't being treated as a secret. Is there any way to mark this as a secret, so that the cluster's cleartext root credentials aren't available in diffs and the state store?gentle-diamond-70147
03/09/2020, 4:18 PMconst k8sProvider = new k8s.Provider(projectName, {
kubeconfig: pulumi.secret(kubeconfig), // <-- use pulumi.secret(...)
});
brave-ambulance-98491
03/09/2020, 4:48 PM