{"repo":"EladLeev/kubeseal-convert","free":true,"listed":false,"github":"https://github.com/EladLeev/kubeseal-convert","clone":"git clone https://github.com/EladLeev/kubeseal-convert.git","description":"A tool for importing secrets from a pre-existing secrets management systems (e.g. Vault, Secrets Manager) into a SealedSecret :shushing_face:","language":"Go","stars":74,"topics":["cli","k8s","kubernetes","migration","platform","sealed-secrets","secrets-management","tools"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"kubeseal-convert The missing part of Sealed Secrets. :closed lock with key: Motivation kubeseal-convert aims to reduce the friction of importing secrets from a pre-existing secret management systems (e.g. Vault, AWS Secrets Manager, etc..) into a SealedSecret . Instead of: 1. Going into AWS Secret Manager 2. Retrieve the secret who needs to be migrated 3. Create a \"normal\" k8s secret 4. Fill out the values on the secret 5. Run kubeseal Just run kubeseal-convert with the secret path. Table of Contents ----------------- - kubeseal-convert - Motivation - Table of Contents - Flags \\& Options - Flags - Supported SM Systems - AWS Secrets Manager - Hashicorp Vault - Azure Key Vault - GCP Secrets Manager - Build from source - Prerequisites - Building Steps - Examples - Raw Mode - Contributing - License Flags & Options Same as the kubeseal command, kubeseal-convert is un-opinionated. It won't commit the secret to Git, apply it to the cluster, or save it on a specific path. The SealedSecret will be printed to STDOUT . You can run it as is, as part of CI, or as part of a Job. Flags Name Description Require Type ----------------------- ------------------------------------------------------------------------ --------- ------------ -n , --name The Sealed Secret name. V string --namespace The Sealed Secret namespace. If not specified, taken from k8s context. string -a , --annotations Sets k8s annotations. KV pairs, comma separated. []string -l , --labels Sets k8s labels. KV pairs, comma sep","default_branch":null,"files":null,"tree":[],"storefront":"/r/EladLeev","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/EladLeev/kubeseal-convert/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}