Lately, I’ve been thinking of implementing a secrets management system such as Infiscal, etc. Does anyone use this or something similar like Hashicorp?

How hard would it be to deploy on a pre-existing set up? How does that work? Do you call the required secret in your Docker compose? What makes a secret manager more secure than pulling secrets from an .env file?

Which secret manager is the most popular/better among selfhosters?

  • Joe@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    2
    ·
    6 hours ago

    Yeah, at that point I wouldn’t worry. If someone has docker access on the server, it’s pretty much game over.