Anyone ever used Teleport, or similar, to connect ...
# kubernetes
b
Anyone ever used Teleport, or similar, to connect to private clusters? I'm thinking about trying to make a dynamic provider (custom resource/gate) to establish a session with the cluster after its creation, but before I start loading up helm charts.
q
I use Teleport every single day. The challenge is that Teleport doesn't really provide a long term token that can be used with Pulumi
b
Isn't that a good thing?
q
Yes, but not for automation 😅
One could use our bridge generator to wrap the Terraform provider
b
Lol, i mean, as long a (pipeline) user can generate a very with a long enough lifetime, right?
q
Yeah. The new MachineID launched with Teleport 9 will be very helpful here
b
How are you securing your clusters? Do you expose a public endpoint?
q
Yeah. I use the multiplex proxy so everything is available over 443
Over public IP / DNS
1