{"repo":"mittwald/kubernetes-secret-generator","free":true,"listed":false,"github":"https://github.com/mittwald/kubernetes-secret-generator","clone":"git clone https://github.com/mittwald/kubernetes-secret-generator.git","description":"Kubernetes controller for automatically generating and updating secrets","language":"Go","stars":394,"topics":["kubernetes","golang","kubernetes-secrets","kubernetes-controller"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"Automatically generated secrets for Kubernetes This repository contains a custom Kubernetes controller that can automatically create random secret values. This may be used for auto-generating random credentials for applications run on Kubernetes. Security note Older versions (<= 1.0.0) of this controller used the math/rand package for generating secrets, which is deterministic and not cryptographically secure (see #1 for more information). If you're already running this controller and want to regenerate all potentially compromised secrets, start the controller with the -regenerate-insecure flag (note that you will need to manually re-create any Pods using these secrets, though). When using the kubectl apply command from below, the new flag will be added to your Deployment automatically. License Copyright 2023 Mittwald CM Service GmbH & Co. KG and contributors This project is licensed under the Apache License, Version 2.0. Deployment Helm The controller can be deployed using Helm. You might want to take a look a the values.yaml to adjust the operator to your needs: - secretLength defines the length of the generated secret values. - watchNamespace defines, which namespaces should be watched for secret objects. - useMetricsService toggles whether the operator should provide a service for metrics monitoring by Prometheus. If this is set to true, the operator will start with additional permissions, namely get permissions for replicasets and deployments in the apiGroup apps , as we","default_branch":null,"files":null,"tree":[],"storefront":"/r/mittwald","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/mittwald/kubernetes-secret-generator/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}