API GatewayのAPIキーをSecrets Managerでうまく管理できないかを検討してみた - Qiita

はじめに API GatewayではAPIキーによる認証を設定できます。APIキーを必須としてデプロイしたAPIでは、配布したAPIキーをヘッダーでx-api-keyと指定してリクエストしないと403 Forbiddenで応答されます。 APIキーを使った認証は実装が簡単...

Qiita

Zapo - công cụ quản lý bí mật (secrets manager) cục bộ mới, được thiết kế cho các nhà phát triển cá nhân và dự án nhỏ. Zapo loại bỏ rắc rối khi quản lý API keys/file .env, không yêu cầu thiết lập phức tạp, tập trung vào bảo mật và kiểm soát hoàn toàn trên máy cục bộ. An toàn với AES-256. Rất tiện lợi cho các side project!

#Zapo #SecretsManager #LocalFirst #SoloDev #SideProject #DeveloperTools #Rust #Tauri #React
#QuanLyBiMat #PhatTrienPhanMem #CongCuDev #DuAnCaNhan

https://www.reddit.com/r/Sid

Công cụ quét mã nguồn bí mật mã nguồn mở vừa được cập nhật, bổ sung phát hiện JWT và tùy chỉnh chính sách qua file .secrets-policy.json. Giao diện CLI cũng được cải thiện, hỗ trợ SARIF và chế độ baseline. Hoàn toàn hoạt động offline, không thu thập dữ liệu!
#secretsmanager #opensource #security #privacy #quétmã #bảomật #mãnguồn

https://www.reddit.com/r/selfhosted/comments/1oqglzt/update_added_jwt_detection_policy_config_to_my/

<s>because it's much safer, we have to give all our secrets to an almighty service. it has promised to be free of bugs and it will only hand out the secrets for legitimate reasons</s>

🤦🏻‍♂️ i continue tp be amazed by how our profession collectively dropped any logical thinking

#aws #secretsmanager #awssecrets

I am suffering from decision paralysis, because I have no idea if I should use #SOPS for my secrets or if it will be a better idea to use #ExternalSecrets with #Bitwarden #SecretsManager
Any #DevOps engineers that are kind enough to help with advice?

#k8s #k3s #kubernetes #BitwardenSM #BitwardenSecretsManager

PSA:
#Ansible + @bitwarden #SecretsManager integration isn't particularly likely to work for anyone who wants to pull secrets during loops, or template out two #secrets in one file.

https://github.com/bitwarden/sdk/pull/676
Fix has been written, but not yet released.

Its unclear (to me) when the next #bitwarden #SDK release will be so at present not sure when we might be back in luck .

[SM-1147] Switch to try_init with pyo3_log by coltonhurst · Pull Request #676 · bitwarden/sdk

Type of change Bug fix New feature development Tech debt (refactoring, code cleanup, dependency upgrades, etc) Build/deploy pipeline (DevOps) Other Objective When running the ansible-playb...

GitHub
Secrets Managerをアカウント間で同期する - Qiita

はじめにこんにちは。1年ぶりの記事です。サボっていたわけではありません。ただ、生きている喜びを実感していただけです。素敵やん。今回担当案件でどうしても実現したい事象がありました。それはSe…

Qiita

Security and simplicity should go hand-in-hand, according to respondents of the 2024 Bitwarden developer survey. Learn more about the driving factors behind #developer security practices: https://bitwarden.com/resources/security-survey-developer-secrets-and-the-future-of-passkeys/

#secretsmanager #secretsmanagement #datasecurity #cybersecurity

Decoding tomorrow: Developer secrets, security and the future of passkeys | Bitwarden Resources

The Bitwarden Resources are here to provide our users with guides, presentations, and other collateral material to help choose the best password manager for themselves or their business.

Bitwarden

This 2024 Bitwarden survey uncovered an overconfidence gap in which #developers recognize a need for continuous security training, yet continue to manage secrets in unsecure ways. Read the other interesting findings: https://bitwarden.com/resources/security-survey-developer-secrets-and-the-future-of-passkeys/

#developer #cybersecurity #datasecurity #secretsmanager

Decoding tomorrow: Developer secrets, security and the future of passkeys | Bitwarden Resources

The Bitwarden Resources are here to provide our users with guides, presentations, and other collateral material to help choose the best password manager for themselves or their business.

Bitwarden

Although developers overwhelmingly agree that ‘secure-by-design’ principles are important, tight deadlines and understaffing create barriers to implementing best practices. Read more about these 2024 developer survey findings: https://bitwarden.com/resources/security-survey-developer-secrets-and-the-future-of-passkeys/

#cybersecurity #passwordmanager #developer #security #secretsmanager

Decoding tomorrow: Developer secrets, security and the future of passkeys | Bitwarden Resources

The Bitwarden Resources are here to provide our users with guides, presentations, and other collateral material to help choose the best password manager for themselves or their business.

Bitwarden