How to Use AKS Pod Identity with Vault

  Рет қаралды 6,727

HashiCorp

HashiCorp

Күн бұрын

When running a Kubernetes cluster, you may want to secure secrets outside the cluster. But how do you provide pods authenticated access to secrets stored in something like HashiCorp Vault? One possible solution comes from the Azure Kubernetes Service, which has the ability to use Azure Active Directory to authenticate running pods. In this talk, you will see how Vault can use Azure AD authentication to allow pods running on AKS to access secrets stored in Vault. First, we will walk through the setup of AKS with Pod Identity. Then we will deploy a Vault cluster and enable Azure authentication. Finally, we will deploy an application on the AKS cluster and retrieve a secret from the Vault cluster. By the end of the talk, you'll be ready to go out and implement this solution in your environment.
This talk was part of HashiTalks, an online event-A 24-hour continuous series of presentations from the worldwide HashiCorp User Group (HUG) community and from HashiCorp engineers as well.
Check out your local chapter or start a new one here: www.meetup.com/pro/hugs -
If you liked this video and want to see more from HashiCorp, subscribe to our channel: kzbin.info?s...
To learn more, visit our hands-on interactive lab environment, HashiCorp Learn: learn.hashicorp.com/
HashiCorp is the leader in multi-cloud infrastructure automation software. The HashiCorp software suite enables organizations to adopt consistent workflows to provision, secure, connect, and run any infrastructure for any application. HashiCorp open source tools Vagrant, Packer, Terraform, Vault, Consul, Nomad, Boundary, and Waypoint are downloaded tens of millions of times each year and are broadly adopted by the Global 2000. Enterprise versions of these products enhance the open source tools with features that promote collaboration, operations, governance, and multi-data center functionality.
For more information, visit: www.hashicorp.com or follow us on social media:
Twitter: @hashicorp
LinkedIn: / hashicorp
Facebook: / hashicorp

Пікірлер
Understanding the GitHub Provider for Terraform
29:33
HashiCorp
Рет қаралды 6 М.
Securing AWS Accounts With HashiCorp Vault
22:13
HashiCorp
Рет қаралды 8 М.
Clowns abuse children#Short #Officer Rabbit #angel
00:51
兔子警官
Рет қаралды 75 МЛН
Женская драка в Кызылорде
00:53
AIRAN
Рет қаралды 409 М.
Каха и суп
00:39
К-Media
Рет қаралды 6 МЛН
Managed Identities with Azure AD (Active Directory) Tutorial
31:54
Adam Marczak - Azure for Everyone
Рет қаралды 142 М.
Azure Kubernetes Service (AKS) Networking Deep Dive
1:03:48
John Savill's Technical Training
Рет қаралды 77 М.
Azure Kubernetes Service (AKS) High Availability
1:04:59
John Savill's Technical Training
Рет қаралды 21 М.
Workload Identity (OIDC) for AKS
15:18
Houssem Dellai
Рет қаралды 6 М.
Azure Kubernetes Services (AKS) Overview
23:34
John Savill's Technical Training
Рет қаралды 131 М.
Protect Your Kubernetes Secrets: Securing with Azure Key Vault
31:59
Zoom Speaks Tech
Рет қаралды 15 М.
AKS : Pod managed identity lab
23:44
Pachehra Talks
Рет қаралды 2,7 М.
Generative AI in a Nutshell - how to survive and thrive in the age of AI
17:57
Телефон-електрошокер
0:43
RICARDO 2.0
Рет қаралды 1,3 МЛН
ОБСЛУЖИЛИ САМЫЙ ГРЯЗНЫЙ ПК
1:00
VA-PC
Рет қаралды 2,2 МЛН
Ноутбук за 20\40\60 тысяч рублей
42:36
Ремонтяш
Рет қаралды 122 М.