GSA-TTS / tts-tech-operations

TTS Technology Operations
https://handbook.tts.gsa.gov/tech-operations/
Other
6 stars 0 forks source link

EPIC: Secret Management #84

Closed JJediny closed 4 years ago

JJediny commented 5 years ago

acceptance criteria:

references:

afeld commented 5 years ago

What kinds of secrets you have in mind? I think most projects have been using environment variables in CircleCI, which does have FedRAMP Tailored/Li-SaaS.

JJediny commented 5 years ago

Agreed, created this issue to get that ^ documented; also to track our conversations with GSA GRACE for establishing an accepted process for managing "secrets in CI" at GSA with Secops concurrence/support.