No video

Introduction to HashiCorp Vault on Kubernetes for beginners

  Рет қаралды 78,505

That DevOps Guy

That DevOps Guy

Күн бұрын

Пікірлер: 70
@manawa3832
@manawa3832 2 жыл бұрын
The fact you explain this stuff without using the insane amount of buzzwords and cryptic terminology that other guides use is phenomenal. Great work!
@yeyerrd
@yeyerrd 3 ай бұрын
The only person who could explain the concepts and how Vault works in one go!
@thalperi2
@thalperi2 3 жыл бұрын
Absolutely love your style, the speed, how deeply you get into everything. Thank you so much, Marcel. Would be awesome if you could put together an entire HashiStack series. Nomad, Consul, and Boundary, especially. More ops and less dev but how these three work together with Vault is needed for setting up the environment for any dev. What do you think?
@mmu99
@mmu99 2 жыл бұрын
I've been watching lots of video on this HashiCorp Vault but only here I found answers to all my questions regarding vault. Thanks for the video mate!
@tombrightbill7249
@tombrightbill7249 3 жыл бұрын
Yea this is great. Super clear and crisp delivery without rabbit-holing at all. I'm sure you're a great public speaker!
@MarcelDempers
@MarcelDempers 3 жыл бұрын
Thanks for the kind words, I'm glad you enjoyed it :)
@sandro_j
@sandro_j 4 жыл бұрын
Thank you for making these videos. Really helpful and appreciate the level of details in your explanations.
@law1213
@law1213 Жыл бұрын
Absolutely fantastic video. I love that you've started with this demo to explain it, then gone into more details in part 2.
@romanmasiar122
@romanmasiar122 Жыл бұрын
Great way of wxplaining things. Agree, your lecture is compact, easy to understand and relevant indeed!
@RahulSharmaSingularity
@RahulSharmaSingularity 2 ай бұрын
Fantastic Series , Kudos for all your knowledge sharing and efforts here !
@tarunprakash2590
@tarunprakash2590 4 жыл бұрын
Great work @Marcel ...eagerly waiting for the next video on HA & how secrets gonna be used btw vault and the pods along with best practices.
@polmaksim
@polmaksim 4 жыл бұрын
Super simple and clear tutorials. Thank you so much!
@Hybrid_Netowrks
@Hybrid_Netowrks Жыл бұрын
Very impressive. Thanks for your contribution
@shubhamnagure7654
@shubhamnagure7654 2 жыл бұрын
absolutely worth watching.
@saadullahkhanwarsi5853
@saadullahkhanwarsi5853 11 ай бұрын
Quite informative tutorial. hope to see such content more in future. Thanks alot
@yeesh2630
@yeesh2630 4 жыл бұрын
Mate your videos are amazing! Great editing, great music taste and super informative, subbed bro keep going!
@MarcelDempers
@MarcelDempers 4 жыл бұрын
I'm glad you enjoyed it, thanks for the support ❤
@user-dn4vv5wx6n
@user-dn4vv5wx6n 3 ай бұрын
Wonderful knowledge sharing session ... Love it !!!
@diademrocks
@diademrocks 3 жыл бұрын
Thank you so much for these! They really help alongside the official documentation :)
@luizgomeslg
@luizgomeslg 3 жыл бұрын
First time here and really loved the explanation and the depth of it! Thanks for the video, and I will surely watch the rest of them on your channel! Thumbs up!
@ayencoscolfield3312
@ayencoscolfield3312 2 жыл бұрын
Awesome content always, i must confess one thing honestly i never get tiered of watching your videos , i could stay glue for hours , you shared tons and tons of quality contents always , thank you so much for being there for guys. By the way can you upload a video on terraform infrastructure as code IAC, i have searched i didnt see anyone by you
@JanPhilippHeinrich
@JanPhilippHeinrich 3 жыл бұрын
Im really sad that I cant give more then one thumbs up :) really great video, thank you
@spiraldynamics6008
@spiraldynamics6008 5 ай бұрын
Thank you very much! ❤
@syednadeembe
@syednadeembe 2 жыл бұрын
thank you for the video its a very good starting point
@lylehenkeman9978
@lylehenkeman9978 4 жыл бұрын
Love your videos dude! Also a fellow software developer form South Africa
@MarcelDempers
@MarcelDempers 4 жыл бұрын
Baie dankie! en groette daar 😃💪🏽
@gaetanjaminon2440
@gaetanjaminon2440 4 жыл бұрын
Really good and helpful video . Thanks
@anthonyrussano
@anthonyrussano 2 жыл бұрын
thank you
@matrix_root
@matrix_root 2 жыл бұрын
Just best. Like always 👍
@stanislasquastana3268
@stanislasquastana3268 4 жыл бұрын
Great job and good explanations. thanks !!
@maciejkolodziejczyk4136
@maciejkolodziejczyk4136 2 жыл бұрын
Marcel this is pure gold!
@VinceBaileydns-direct
@VinceBaileydns-direct 3 жыл бұрын
Thank you this very good so far
@samollojr-er7cb
@samollojr-er7cb Жыл бұрын
Waou Amazing video
@Ayush-xp8kc
@Ayush-xp8kc 4 жыл бұрын
Nice explanation. waiting for HA version. Also, if possible share the difference between using etcd clusters vs consul. Thanks
@AndrewFigaroa
@AndrewFigaroa Жыл бұрын
Awesome! thank you for explaining this... I am in also on the fence between is vault "really" solving\facilitate secret management OR just overly complex...
@MarcelDempers
@MarcelDempers Жыл бұрын
Secret management is generally complex, especially when financial audits are involved and access to the secrets can only be authorised by more than two parties. This is generally where vaults come in. Simpler solutions exist, but they are mainly around focusing on secret hygiene, for example protecting secrets with RBAC so they cannot be retrieved once created, prevent exec into containers, limit who can create secrets.. etc
@sageatahan5489
@sageatahan5489 3 жыл бұрын
Great Video!!! First timer. Was wondering if you could make a video explaining how to deploy Vault on k8s gcloud cluster using an Operator : )
@syedhyder5630
@syedhyder5630 6 ай бұрын
I have a small doubt. Why do you provide the vault pod with a service account. It doesn't need access to any of the cluster resources right?
@anil5065
@anil5065 2 жыл бұрын
I am wondering if where I can see the video of setting up vault, cert-manager for kubernetes to auto renewal of certificates, would be awesome if you can share your experience
@stolmiti
@stolmiti 3 жыл бұрын
You Rock!!
@rickyclarke1267
@rickyclarke1267 4 жыл бұрын
Please make a tutorial on JFrog running on Kubernetes(Installation & Configuration), using it as an artifactory
@mtan3716
@mtan3716 3 жыл бұрын
Thank you for your videos. I have a problem with vault being initialized already on installation. I think this is because I have previously installed (using terraform's helm provider), initialized and unsealed it on my GKE cluster to test out but removed (using terraform) it after some trials. How do I uninitialize vault in this case to restart again? Thank you for your time!
@pratikbhandari1676
@pratikbhandari1676 3 жыл бұрын
Great video
@mzimmerman1988
@mzimmerman1988 4 жыл бұрын
nice video!
@tirushv9681
@tirushv9681 2 жыл бұрын
Considering a scenario where we have a pod running with some backend application connected with AWS RDS database using vault due to high traffic these pods and nodes needs to scale and communicate with the database pretty frequently so as the vault creates temporary credentials isnt it consuming the disk usage by creating users and more connections happening with RDS. (Just got this question into my head). Hoping for a reply with solution. Thank you . Love your content
@MarcelDempers
@MarcelDempers 2 жыл бұрын
Thanks for the kind words 🙏🏼 Secret rotation should have zero impact to application performance. You should tune your database client to handle connections efficiently and can establish new connections when a new secret comes along. This should not create disk IO unless the application is written incorrectly
@tirushv9681
@tirushv9681 2 жыл бұрын
@@MarcelDempers Got it thank you.....have a small question If Pods are created with Front end app (Nodejs) and backend (mYsql) with EBS scaling is easy using Cluster and Pod scaling ....... But here how to app pods has communication with other MySQL pods from other nodes to have consistent data ? How does these MySQL EBS pods distribute it's all data accross the app pods?
@DommageCollateral
@DommageCollateral Ай бұрын
yet again i check out k8s obelix videos to gain better devops skills
@kyand920
@kyand920 3 жыл бұрын
I have a question, that /vault/secrets/ directory is world readable... Isn't that a bit "not secure" ?
@rayr268
@rayr268 3 жыл бұрын
Your videos are killer
@DevOpsKey1
@DevOpsKey1 Жыл бұрын
@Marcel I have a kind suggestion can you please made a Azure Tutorials please I always enjoy your Video.
@benkhemismarwen2431
@benkhemismarwen2431 3 жыл бұрын
amazing video ❤️
@fdghjvgf
@fdghjvgf 4 жыл бұрын
Coolest !! :)
@oschvr
@oschvr 4 жыл бұрын
Awesome ! Thank you
@rayudu2080
@rayudu2080 3 жыл бұрын
Hey Hai Can we do auto unseal process within vault yaml files, can you please let me know if there is process.
@jitendrapatil1
@jitendrapatil1 4 жыл бұрын
nice video
@ryancorales7351
@ryancorales7351 3 жыл бұрын
@marcel inject vault secrets to my pods in path /vault/secrets/mysql/, how am i supposed to use that secrets in my java application, thanks
@I_love_our_planet
@I_love_our_planet 2 жыл бұрын
Or store the Seal Keys in a proper KMS System from a Cryptovendor ;-)
@fosheur561
@fosheur561 4 жыл бұрын
I try to use it on Azure, but i don't found how to expose correctly the app..
@srammanokar
@srammanokar 3 жыл бұрын
GREAT!!👏👏
@sovsemnetot
@sovsemnetot 3 жыл бұрын
thanks a lot!!
@lachopaez3080
@lachopaez3080 3 жыл бұрын
Seems that the certificate is expired. $ vault operator init Error initializing: Put 127.0.0.1:8200/v1/sys/init: x509: certificate has expired or is not yet valid
@lachopaez3080
@lachopaez3080 3 жыл бұрын
I bypass this adding this "- name: VAULT_SKIP_VERIFY value: "true" after line 94 on the file "server-statefulset.yaml". Nos is pendding how to upgrade with valid certificate.
@Oswee
@Oswee 3 жыл бұрын
You should kill the root token ASAP because it has no any logging. I mean... You can't do any meaningful activity tracking.
@liberator48
@liberator48 3 жыл бұрын
Appreciate the effort but bro take a step back, don't just talk into my face with words, visualize it for me from the start... i'm trying to learn this and I don't know what you're saying.
@zhang20244
@zhang20244 3 ай бұрын
I received this error: Error initializing: Put 127.0.0.1:8200/v1/sys/init: x509: certificate has expired or is not yet valid. can you please provide solution ?
@Alpha-kt6hc
@Alpha-kt6hc Жыл бұрын
Get error as soon as I do vault operator init: Get "127.0.0.1:8200/v1/sys/seal-status": x509: certificate has expired or is not yet valid: current time 2022-11-27T09:07:18Z is after 2021-03-02T22:46:00Z
@MarcelDempers
@MarcelDempers Жыл бұрын
you'll need to generate a new cert as shown in the guide
@Alpha-kt6hc
@Alpha-kt6hc Жыл бұрын
@@MarcelDempers Vault 2022 video worked for me.
Get HashiCorp Vault running on Kubernetes with TLS for beginners
9:58
That DevOps Guy
Рет қаралды 21 М.
Introduction to HashiCorp Vault with Armon Dadgar
16:53
HashiCorp
Рет қаралды 202 М.
Look at two different videos 😁 @karina-kola
00:11
Andrey Grechka
Рет қаралды 14 МЛН
Why Is He Unhappy…?
00:26
Alan Chikin Chow
Рет қаралды 111 МЛН
Bony Just Wants To Take A Shower #animation
00:10
GREEN MAX
Рет қаралды 7 МЛН
The Giant sleep in the town 👹🛏️🏡
00:24
Construction Site
Рет қаралды 19 МЛН
Understanding StatefulSets in Kubernetes
28:44
That DevOps Guy
Рет қаралды 47 М.
How to deploy Vault for Kubernetes in 2022 and inject secrets
30:30
That DevOps Guy
Рет қаралды 45 М.
Simplify Kubernetes YAML with Kustomize
20:37
That DevOps Guy
Рет қаралды 75 М.
Do NOT Learn Kubernetes Without Knowing These Concepts...
13:01
Travis Media
Рет қаралды 271 М.
What is Secrets Management?
9:11
IBM Technology
Рет қаралды 16 М.
Basic secret injection for microservices on Kubernetes using Vault
16:52
Используем Hashicorp Vault в kubernetes
42:46
Артур Крюков
Рет қаралды 9 М.
Look at two different videos 😁 @karina-kola
00:11
Andrey Grechka
Рет қаралды 14 МЛН