Fueling innovative software
July 15-18, 2019
Portland, OR

Hands-on with Vault on Kubernetes

Anubhav Mishra (HashiCorp)
1:30pm5:00pm Tuesday, July 16, 2019
Secondary topics:  Cloud Native
Average rating: *****
(5.00, 1 rating)

Who is this presentation for?

  • Developers, operators, system administrators, and SREs

Level

Beginner

Description

Kubernetes is a popular application delivery platform, but its built-in secret-management system does not serve the diverse needs of many organizations.

Anubhav Mishra leads you through a hands-on workshop on Vault, a single binary secrets management system, to build a secrets management system for a production Kubernetes environment from scratch. He showcases how to run Vault as an infrastructure service on Kubernetes and walks you through a guide to secure Vault itself on Kubernetes, and he explains how applications running on Kubernetes can interact and use Vault. He’ll explore how services can retrieve dynamic credentials like identity and access management (IAM) credentials for cloud providers and database passwords.

Prerequisite knowledge

  • A basic understanding of cloud security(such as key management services & identity management)
  • Basic knowledge of Kubernetes concepts (such as Pods, Volumes, Deployments)

Materials or downloads needed in advance

  • A laptop with a modern browser
  • Google Cloud Platform account
  • Google Cloud Platform project with owner access
  • Google Cloud Shell with HashiCorp Vault CLI installed

What you'll learn

  • Understand how to successfully run Vault inside Kubernetes and expose Vault secrets to Kubernetes applications and services
Photo of Anubhav Mishra

Anubhav Mishra

HashiCorp

Anubhav Mishra is a developer advocate at HashiCorp. He created Atlantis—an open source project that helps teams collaborate on infrastructure using Terraform. Previously, he worked at Hootsuite, where he built distributed systems and a microservice delivery platform. Anubhav loves open source software and is continuously finding ways to contribute to projects that excite him and helping developers and operators do better. That has led him to contribute to Virtual Kubelet and Helm (Cloud Native Computing Foundation (CNCF) projects). In his free time, he DJs, makes music, and plays football. He’s a huge Manchester United supporter.