Skip to content

Consolidate sealed secret keys and ensure key rotatation is disabled #123

@spwoodcock

Description

@spwoodcock

kubectl get secret -n kube-system

sealed-secrets-key2w77z   kubernetes.io/tls   2      106d
sealed-secrets-keyf8vjd   kubernetes.io/tls   2      166d
sealed-secrets-keyklqlj   kubernetes.io/tls   2      226d
sealed-secrets-keylgdgp   kubernetes.io/tls   2      136d
sealed-secrets-keysgxr2   kubernetes.io/tls   2      76d
sealed-secrets-keyvxscb   kubernetes.io/tls   2      196d
  • I thought we had disabled key rotation, so surprised to see these new keys.
  • Our backup strategy needs to disable key rotation, as only want to backup one key, not a new key every 90 days...

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions