bob5ec / docker-infrastructure

2 stars 0 forks source link

Transport Secrets to machines #20

Closed bob5ec closed 5 years ago

bob5ec commented 5 years ago

Threat: slack messes with public key -> admin checks key fingerprint -> admin NOT adds slacks key -> secrets NOT compromised Threat: insurant randomness in vm when creating the key -> force libvirt to use /dev/urandom