digitalcourage.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Diese Instanz wird betrieben von Digitalcourage e.V. für die Allgemeinheit. Damit wir das nachhaltig tun können, erheben wir einen jährlichen Vorausbeitrag von 1€/Monat per SEPA-Lastschrifteinzug.

Server stats:

857
active users

#openbao

1 post1 participant0 posts today

🚀🎉 Hold the presses! #OpenBao adds "Namespaces" to its secret manager, enabling isolated environments for your secrets. 🤔 Finally, a solution to the problem of "Where did I put my secrets again?" 😅 Thanks, OpenBao, for making secret management feel like a game of hide-and-seek with a twist! 🙄🔍
openbao.org/blog/namespaces-an #Namespaces #SecretManagement #IsolatedEnvironments #CyberSecurity #HackerNews #ngated

openbao.org · Announcing OpenBao Namespaces | OpenBaoEnabling Multi-Tenancy within OpenBao

....aaaaaand (the fork of ) is on its way to @opensuse in the latest version 2.2.1. Since 2.2.0 the webui is included in OpenBao, so this can be a full replacement for Vault!

Looking forward to doing more testing with it!

In case you want to try it out, here is a setup using to prepare an OpenBao server VM and a client using a secret.
codeberg.org/johanneskastl/ope

Codeberg.orgopenbao_vagrant_libvirt_ansibleVagrant-libvirt setup with an OpenBao Server and a client VM running the OpenBao Agent (and a PostgreSQL database)

Uuuuuuuh, (the open source fork of ) just released version 2.2.0 and now includes the UI, that was missing so far.

The package for @opensuse was adapted, tested and worked out fine. Will soon be available in !

If you want to test this out, feel free to use this vagrant-libvirt setup of mine:
codeberg.org/johanneskastl/ope

Codeberg.orgopenbao_vagrant_libvirt_ansibleVagrant-libvirt setup with an OpenBao Server and a client VM running the OpenBao Agent (and a PostgreSQL database)

I can’t believe how HashiCorp has fumbled the bag lately! It’s really disheartening to see a company that once had such promise in the open-source software space lose its way. It’s a reminder of how important it is to stay true to your values.
On a brighter note, I’m excited about the release of OpenBao! It’s an open-source fork of Hashi Vault, and it really has the potential to fill the gap left by HashiCorp. Check it out here: openbao.org/!
#OpenBao #open-source #Hashi #vault #FOSS

openbao.orgOpenBao | OpenBaoOpenBao is an open source, community-driven fork of HashiCorp Vault managed by the Linux Foundation to manage, store, and distribute sensitive data.
Replied in thread

@daniel1820815 #OpenBao is the open source fork of Vault if you go that direction. In general, I look at the potential threats first. Inside of the container, the secret will be available, and the host has access to the container.

The advantage of tools like Vault is central storage/access to those secrets, and the ability to continuously and automatically rotate those secrets. But the latter needs support from all parts of the application.

github.com/openbao/openbao

GitHubGitHub - openbao/openbao: OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys.OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys. - openbao/openbao