Join Slack
Powered by
This message was deleted.
# general
s
sparse-intern-71089
06/10/2021, 6:39 PM
This message was deleted.
b
bored-oyster-3147
06/10/2021, 6:46 PM
I would use pulumi to put the password in AWS Parameter Store first and then I would have my app refer to that in the container definition
bored-oyster-3147
06/10/2021, 6:49 PM
sorry I use ECS with Parameter Store but it looks like with EKS you can do something very similar with Secrets Manager:
https://aws.amazon.com/blogs/security/how-to-use-aws-secrets-configuration-provider-with-kubernetes-secrets-store-csi-driver/
bored-oyster-3147
06/10/2021, 6:50 PM
And pulumi can manage secrets manager:
https://www.pulumi.com/docs/reference/pkg/aws/secretsmanager/
t
thankful-thailand-33082
06/10/2021, 8:31 PM
Can you mount a volume/secret during Druid deployment? You could get EKS pulumi stack secret using the
Stack Reference
from a secondary project or within the same stack/project. Then create a k8s secret
https://www.pulumi.com/docs/reference/pkg/kubernetes/core/v1/secret/
4
Views
Open in Slack
Previous
Next