We're a user group for PHP developers living in, around and within travelling distance of Rotterdam. While existing for more than three years, we were able to create a user group with over a 500 members, and we're still growing! Feel free to join our community and get in touch with other developers!
Be nice, help the person who hacks your servers to get your data - Srdjan Vranac (@vranac)
Where are your credentials and secrets stored?
In .env files or in environment variables, or even worse in config files?
Are your primary AWS keys shared amongst developers?
Do you still have SSH keys from former employees on your servers?
If your answer is ""Yes"" to one or more of these questions you probably haven't heard the term ""secrets management""
In this talk we will look into managing secrets in development and operations, and expose the problems related to them.
I will give you an overview of the current state of techniques to mitigate these problems and we'll take a brief look at how an open source tool like Hashicorp Vault can provide a solution to managing secrets in the years to come.