Provided policy document for permissions regarding secrets manager
Provided steps to create AWS Resource Role which will attach the secret smanager policy and allows for attachment of policies for other aws resources if required(see policy directory)
Tested pull of secrets by leveraging the secrets manager package: https://github.com/IllumiDesk/secrets-manager
Provides ability to hardcode db values or pass secrets manager arn to securely pass database value form secrets manager
Tasks accomplished
https://github.com/IllumiDesk/secrets-manager
Images used have the tag:
secretsmanager
forgrader-setup-service
andk8s-hub
. PR for that is https://github.com/IllumiDesk/illumidesk/pull/646NOTE: PR for secretsmanager for the illumidesk code is subject to change based on Rupesh's changes lti changes. https://github.com/IllumiDesk/illumidesk/pull/644