简体   繁体   中英

Handling sensitive information with Puppet

What is the best way to store and handle sensitive information with puppet and safely distribute it to your nodes?

The version I am using is 2.7.

One example would be database passwords. Plain text passwords are needed on your application servers.

How can one store these without leaving them lying around inside of the puppet scripts?

Another option, but I haven't tried it personally. https://forge.puppetlabs.com/sshipway/ss

Of course, this does require putting the data into a secure vault but that seems much more secure than storing sensitive data in Hiera.

The technical post webpages of this site follow the CC BY-SA 4.0 protocol. If you need to reprint, please indicate the site URL or the original address.Any question please contact:yoyou2525@163.com.

 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM