API GatewayのAPIキーをSecrets Managerでうまく管理できないかを検討してみた
https://qiita.com/_YukiOgawa/items/33581eeb70e9e3155873?utm_campaign=popular_items&utm_medium=feed&utm_source=popular_items
API GatewayのAPIキーをSecrets Managerでうまく管理できないかを検討してみた
https://qiita.com/_YukiOgawa/items/33581eeb70e9e3155873?utm_campaign=popular_items&utm_medium=feed&utm_source=popular_items
Zapo - công cụ quản lý bí mật (secrets manager) cục bộ mới, được thiết kế cho các nhà phát triển cá nhân và dự án nhỏ. Zapo loại bỏ rắc rối khi quản lý API keys/file .env, không yêu cầu thiết lập phức tạp, tập trung vào bảo mật và kiểm soát hoàn toàn trên máy cục bộ. An toàn với AES-256. Rất tiện lợi cho các side project!
#Zapo #SecretsManager #LocalFirst #SoloDev #SideProject #DeveloperTools #Rust #Tauri #React
#QuanLyBiMat #PhatTrienPhanMem #CongCuDev #DuAnCaNhan
Công cụ quét mã nguồn bí mật mã nguồn mở vừa được cập nhật, bổ sung phát hiện JWT và tùy chỉnh chính sách qua file .secrets-policy.json. Giao diện CLI cũng được cải thiện, hỗ trợ SARIF và chế độ baseline. Hoàn toàn hoạt động offline, không thu thập dữ liệu!
#secretsmanager #opensource #security #privacy #quétmã #bảomật #mãnguồn
https://www.reddit.com/r/selfhosted/comments/1oqglzt/update_added_jwt_detection_policy_config_to_my/
<s>because it's much safer, we have to give all our secrets to an almighty service. it has promised to be free of bugs and it will only hand out the secrets for legitimate reasons</s>
🤦🏻♂️ i continue tp be amazed by how our profession collectively dropped any logical thinking
I am suffering from decision paralysis, because I have no idea if I should use #SOPS for my secrets or if it will be a better idea to use #ExternalSecrets with #Bitwarden #SecretsManager…
Any #DevOps engineers that are kind enough to help with advice?
PSA:
#Ansible + @bitwarden #SecretsManager integration isn't particularly likely to work for anyone who wants to pull secrets during loops, or template out two #secrets in one file.
https://github.com/bitwarden/sdk/pull/676
Fix has been written, but not yet released.
Its unclear (to me) when the next #bitwarden #SDK release will be so at present not sure when we might be back in luck .
Security and simplicity should go hand-in-hand, according to respondents of the 2024 Bitwarden developer survey. Learn more about the driving factors behind #developer security practices: https://bitwarden.com/resources/security-survey-developer-secrets-and-the-future-of-passkeys/
#secretsmanager #secretsmanagement #datasecurity #cybersecurity
This 2024 Bitwarden survey uncovered an overconfidence gap in which #developers recognize a need for continuous security training, yet continue to manage secrets in unsecure ways. Read the other interesting findings: https://bitwarden.com/resources/security-survey-developer-secrets-and-the-future-of-passkeys/
Although developers overwhelmingly agree that ‘secure-by-design’ principles are important, tight deadlines and understaffing create barriers to implementing best practices. Read more about these 2024 developer survey findings: https://bitwarden.com/resources/security-survey-developer-secrets-and-the-future-of-passkeys/
#cybersecurity #passwordmanager #developer #security #secretsmanager