Sem descrição

Moritz Johner 6b14f3ac03 fix: ensure condition errors do not change with every req há 5 anos atrás
.github 7beec56522 feat: add basic e2e test há 5 anos atrás
apis aaa6ad0ca8 fix: make vault version optional w/ defaults há 5 anos atrás
assets e0e824967d Tidy image há 5 anos atrás
deploy 5afa7795af Add aggregated ClusterRoles for view and edit permissions of custom resources há 5 anos atrás
design 8361f6d055 Move crd spec to directory há 5 anos atrás
docs 8c8064e0e1 Draft: feat: implement template (#69) há 5 anos atrás
e2e 7beec56522 feat: add basic e2e test há 5 anos atrás
hack 80f6376d2c Add first iteration of custom metrics há 5 anos atrás
pkg 6b14f3ac03 fix: ensure condition errors do not change with every req há 5 anos atrás
.editorconfig 987d499241 cleanup: add lint and editorconfig há 5 anos atrás
.gitignore 7beec56522 feat: add basic e2e test há 5 anos atrás
.golangci.yaml 8c8064e0e1 Draft: feat: implement template (#69) há 5 anos atrás
CNAME 90286f37a4 Create CNAME há 5 anos atrás
Dockerfile b4b1f892c5 Improve primary CI pipeline and refactor Makefile há 5 anos atrás
LICENSE 59a364e04d initial commit há 5 anos atrás
Makefile 7beec56522 feat: add basic e2e test há 5 anos atrás
PROJECT 2e0a6effbe convert to multi-api há 5 anos atrás
README.md aab243e712 Add CoC and references to it há 5 anos atrás
SECURITY.md 25b3f4dd83 feat: security policy & dependabot (#60) há 5 anos atrás
go.mod 0d0b60423c chore(deps): bump github.com/tidwall/gjson from 1.7.4 to 1.7.5 há 5 anos atrás
go.sum 0d0b60423c chore(deps): bump github.com/tidwall/gjson from 1.7.4 to 1.7.5 há 5 anos atrás
main.go 6318811108 Cleanup and remove kustomize manifests in favor of Helm chart há 5 anos atrás
tools.go 6318811108 Cleanup and remove kustomize manifests in favor of Helm chart há 5 anos atrás

README.md

External Secrets


The External Secrets Kubernetes operator reads information from a third party service like AWS Secrets Manager and automatically injects the values as Kubernetes Secrets.

Multiple people and organizations are joining efforts to create a single External Secrets solution based on existing projects. If you are curious about the origins of this project, check out this issue and this PR.

⚠️ Please bear in mind

While this project is not ready, you might consider using the following:

Installation

Clone this repository:

git clone https://github.com/external-secrets/external-secrets.git

Install the Custom Resource Definitions:

make install

Run the controller against the active Kubernetes cluster context:

make run

Apply the sample resources:

kubectl apply -f config/samples/external-secrets_v1alpha1_secretstore.yaml
kubectl apply -f config/samples/external-secrets_v1alpha1_externalsecret.yaml

We will add more documentation once we have the implementation for the different providers.

Planned Features

  • Support to multiple Provider stores (AWS Secret Manager, GCP Secret Manger, Vault and more) simultaneously.
  • Multiple External Secrets operator instances for different contexts/environments.
  • A custom refresh interval to sync the data from the Providers, syncing your Kubernetes Secrets up to date.
  • Select specific versions of the Provider data.

Contributing

We welcome and encourage contributions to this project! Please read the Developer and Contribution process guides. Also make sure to check the Code of Conduct and adhere to its guidelines.

Kicked off by