4 ms·
the simplest option is to store your keys in aws secrets manager (if you use aws), and then write some tooling around it. self promotion * You did ask how peo
by gerritjvv 6y ago
the simplest option is to store your keys in aws secrets manager (if you use aws), and then write some tooling around it.
self promotion *
You did ask how people do it :), this is my way, Ive written my own service which has been in production for more than 3 years, http://pkhub.io http://pkhub.io (if you would like to try it send me an email to admin@pkhub.io). This was before aws secrets manager, the tooling is usefull cause I wrote: running your app with its needed secrests dev/stage/prod, accessing dbs, downloading and installing ssh keys to ssh agent, utilities..
end
of course you could write all these yourself with aws secrets manager.
there is hashicorp's vault but tbh it always seemed like way to complicated to setup.
my advice in general would be: to get something secure but simple enough that your engineers can do their work and access the resources they need, without the oh only bob has the keys on his laptop situation.