hackoregon / devops-17

deployment tools for Hack Oregon projects
4 stars 3 forks source link

[Future] Integrate more secure secrets-management strategy into CI/CD pipeline #41

Open MikeTheCanuck opened 7 years ago

MikeTheCanuck commented 7 years ago

For the current season, the project_config.py + S3 pattern is a reasonable means of keeping project secrets out of GitHub repos.

For future seasons, let's look into additional solutions that reduce the attack surface on secrets even further, such as: