We were considering Vault, I guess we'll look into alternatives now, are there any decent Free Software ones in the first place?
ive not done secrets management before but i came across this list on hackernews, a few non-cloud ones use open source license https://news.ycombinator.com/item?id=37133054#37151218
but another user there have mentioned that while most of them integrate with Kubernetes and AWS, short lived DB credentials are not in any of those listed
I'm not an infra dev, but a previous project used SOPS and it seemed alright
I've been using Infisical recently and I like it a lot.
What a shame.
I was hit aggressively by HC sales team last year, we are using TF and Vault, and were looking to add consul, now it is pretty vauge how it will all pan put
Fuck'em. 'Nuff said.
Not that I'd know much about this, but can't you easily replace terraform with some script that remotely installs NixOS?
i dont think theyre equivalent tools since Terraform is used for things like creating cloud VMs with the selected OS image, configuring subnets and route tables among other things which i dont believe NixOS is meant for
Terraform is great automation, but it really shines over scripts in a few ways:
- intrinsic documentation for your infrastructure
- much less brittle to differences in the initial state
- changing your setup later doesn't require any new script logic, just a simple config change
- much better support for collaborative editing
Technology
A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.
Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.
Subcommunities on Beehaw:
This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.