4 ms·
I believe AWS has a good guide on setting up a “secure” Helm deployment running Tiller locally using EKS: https://docs.aws.amazon.com/eks/latest/userguide/helm
by nodesocket 7y ago
I believe AWS has a good guide on setting up a “secure” Helm deployment running Tiller locally using EKS:
https://docs.aws.amazon.com/eks/latest/userguide/helm.html https://docs.aws.amazon.com/eks/latest/userguide/helm.html
- charlieegan3 7y agoThe projects own documentation has always made the steps required for secure deployment pretty clear too https://helm.sh/docs/using_helm/#securing-your-helm-installation https://helm.sh/docs/using_helm/#securing-your-helm-installa... The issue is the server side tiller component. This is going away in Helm 3.
- dividedbyzero 7y agoSetting up Helm seems to be part of a lot of "first steps" tutorial, and it makes a lot of sense, Helm is very helpful especially when starting out with K8S – I'm still in the starting-out phase and I find it very helpful. But for me, and possibly that audience in general, this document doesn't feel very actionable, it assumes quite a bit of in-depth knowledge, that I currently don't have yet. I realize that's part of the learning curve, but for a tool that's so popular and so easy to set up and run, it feels like it should be easier to find more newbie-friendly material on how to secure it properly (I haven't been able to find much). Things being as they are, I'd expect there to be a lot of insecure tiller installs on GKEs out there.
- charlieegan3 7y ago> doesn't feel very actionable, it assumes quite a bit of in-depth knowledge Think you've hit the nail on the head there, it's a fair criticism.