sidataplus / omop-core

Part of OMOP NHSO TCELS project
0 stars 0 forks source link

Dockerfile using secrets in Compose for credential management #16

Open ThanePi opened 1 year ago

ThanePi commented 1 year ago

A secret is any piece of data, such as a password, certificate, or API key, that shouldn’t be transmitted over a network or stored unencrypted in a Dockerfile or in your application’s source code. Learn more: https://docs.docker.com/compose/use-secrets/

Setting up this layer possible prevent breach from credential leaks.

Urgent Level: Optional + Not in 2023Q3 MVP When to use: Enhancing/Hardening action required

Pre-Requisite: Secret file patterning. Possible Obsolete: Secret embedding, or passing in environment.