home.social

#secretmanagement — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #secretmanagement, aggregated by home.social.

fetched live
  1. Infinito.Nexus 14.2: OpenBao introduces advanced secrets management

    Infinito.Nexus 14.2 introduces OpenBao for secrets management, giving applications and services a dedicated way to handle credentials, API keys and machine identities. OpenBao integrates with the existing Infinito.Nexus identity and deployment model. Users can authenticate through Keycloak, or LDAP when OpenLDAP is deployed, while services and automation use their own AppRole identities. Credentials are automatically changed on every deployment, and the OpenBao root token is not retained after the initial setup. The release also adds recovery handling, automatic unsealing after restarts, optional internal PKI and Prometheus alerts when OpenBao is sealed or unreachable. In addition, 14.2 fixes LDAP administration in LAM, improves Docker Swarm handling of existing networks, adds role-local Prometheus alert rules, restores video recording for manually created Playwright contexts and updates pgAdmin to 9.18. […]

    blog.infinito.nexus/blog/2026/

  2. Trouble with secret management grows when shared long-lived keys spread beyond anyone's inventory.

    #SecretManagement #Cybersecurity #ProfessionalGrowth

  3. It’s the final day of InCyber! 🚀🇫🇷

    If you haven’t stopped by Stand 44 yet, this is your last chance to grab some Passbolt merch.

    For more info: passbolt.com/?utm_campaign=409

    #Passbolt #InCyber #cybersecurity #opensource #secretmanagement

  4. It’s the final day of InCyber! 🚀🇫🇷

    If you haven’t stopped by Stand 44 yet, this is your last chance to grab some Passbolt merch.

    For more info: passbolt.com/?utm_campaign=409

    #Passbolt #InCyber #cybersecurity #opensource #secretmanagement

  5. It’s the final day of InCyber! 🚀🇫🇷

    If you haven’t stopped by Stand 44 yet, this is your last chance to grab some Passbolt merch.

    For more info: passbolt.com/?utm_campaign=409

    #Passbolt #InCyber #cybersecurity #opensource #secretmanagement

  6. It’s the final day of InCyber! 🚀🇫🇷

    If you haven’t stopped by Stand 44 yet, this is your last chance to grab some Passbolt merch.

    For more info: passbolt.com/?utm_campaign=409

    #Passbolt #InCyber #cybersecurity #opensource #secretmanagement

  7. We are live at InCyber in Lille! 👋🏼🇫🇷
    Stop by Stand F44 to learn more about Passbolt, and chat over a coffee (or a beer after 17:00 PM! 🍻).
    👉🏼 If you haven't secured your spot yet, there is still time to grab a pass: europe.forum-incyber.com/
    #Passbolt #InCyber #Cybersecurity #OpenSource #SecretManagement

  8. We are live at InCyber in Lille! 👋🏼🇫🇷
    Stop by Stand F44 to learn more about Passbolt, and chat over a coffee (or a beer after 17:00 PM! 🍻).
    👉🏼 If you haven't secured your spot yet, there is still time to grab a pass: europe.forum-incyber.com/
    #Passbolt #InCyber #Cybersecurity #OpenSource #SecretManagement

  9. We are live at InCyber in Lille! 👋🏼🇫🇷
    Stop by Stand F44 to learn more about Passbolt, and chat over a coffee (or a beer after 17:00 PM! 🍻).
    👉🏼 If you haven't secured your spot yet, there is still time to grab a pass: europe.forum-incyber.com/
    #Passbolt #InCyber #Cybersecurity #OpenSource #SecretManagement

  10. We are live at InCyber in Lille! 👋🏼🇫🇷
    Stop by Stand F44 to learn more about Passbolt, and chat over a coffee (or a beer after 17:00 PM! 🍻).
    👉🏼 If you haven't secured your spot yet, there is still time to grab a pass: europe.forum-incyber.com/
    #Passbolt #InCyber #Cybersecurity #OpenSource #SecretManagement

  11. Demain, direction le forum InCyber à Lille ! 🛡️

    Retrouvez-nous sur le stand F44 pour parler gestion de mots de passe & secrets, open-source et auto-hébergement.

    On a aussi fait le plein de goodies pour l'occasion.

    À demain ! 👋

    Pour en savoir plus: europe.forum-incyber.com/acces

    #Passbolt #InCyber #CyberSec #Lille #cybersecurity #opensource #secretmanagement

  12. Demain, direction le forum InCyber à Lille ! 🛡️

    Retrouvez-nous sur le stand F44 pour parler gestion de mots de passe & secrets, open-source et auto-hébergement.

    On a aussi fait le plein de goodies pour l'occasion.

    À demain ! 👋

    Pour en savoir plus: europe.forum-incyber.com/acces

    #Passbolt #InCyber #CyberSec #Lille #cybersecurity #opensource #secretmanagement

  13. Demain, direction le forum InCyber à Lille ! 🛡️

    Retrouvez-nous sur le stand F44 pour parler gestion de mots de passe & secrets, open-source et auto-hébergement.

    On a aussi fait le plein de goodies pour l'occasion.

    À demain ! 👋

    Pour en savoir plus: europe.forum-incyber.com/acces

    #Passbolt #InCyber #CyberSec #Lille #cybersecurity #opensource #secretmanagement

  14. Demain, direction le forum InCyber à Lille ! 🛡️

    Retrouvez-nous sur le stand F44 pour parler gestion de mots de passe & secrets, open-source et auto-hébergement.

    On a aussi fait le plein de goodies pour l'occasion.

    À demain ! 👋

    Pour en savoir plus: europe.forum-incyber.com/acces

    #Passbolt #InCyber #CyberSec #Lille #cybersecurity #opensource #secretmanagement

  15. "Khám phá CruxVault - Công cụ quản lý bí mật Git-like đầu tiên trên máy cục bộ!
    - Mã hóa bí mật cục bộ
    - Lưu trữ bí mật với kiểm soát phiên bản
    - CLI giống Git (crux init, crux commit, crux status)
    - Thẻ môi trường (dev/staging/prod)
    Hoàn toàn ngoại tuyến, không phụ thuộc vào cloud!
    #CruxVault #SecretManagement #LocalFirst #GitLike #DevTool #CôngCụLậpTrình #QuảnLýBíMật"

    reddit.com/r/SideProject/comme

  16. This is why you should not hard-code credentials in your source code, but use env. vars or credential managers.

    Looks like someone sent me a mail via a python script. The script had an issue which let the mail content to be the script itself, which contains a token.

    (Or this is phishing wanting me to try the token)

    #development #secretmanagement #security

  17. This is why you should not hard-code credentials in your source code, but use env. vars or credential managers.

    Looks like someone sent me a mail via a python script. The script had an issue which let the mail content to be the script itself, which contains a token.

    (Or this is phishing wanting me to try the token)

    #development #secretmanagement #security

  18. This is why you should not hard-code credentials in your source code, but use env. vars or credential managers.

    Looks like someone sent me a mail via a python script. The script had an issue which let the mail content to be the script itself, which contains a token.

    (Or this is phishing wanting me to try the token)

    #development #secretmanagement #security

  19. This is why you should not hard-code credentials in your source code, but use env. vars or credential managers.

    Looks like someone sent me a mail via a python script. The script had an issue which let the mail content to be the script itself, which contains a token.

    (Or this is phishing wanting me to try the token)

    #development #secretmanagement #security

  20. I released params2env, a Go based CLI tool I've built that reads AWS SSM Parameter Store values and sets them as environment variables.

    The tool can create, modify, and delete parameters, and supports optional cross-region replication for redundancy.

    Read more on my blog: dominik.wombacher.cc/posts/par

  21. I released params2env, a Go based CLI tool I've built that reads AWS SSM Parameter Store values and sets them as environment variables.

    The tool can create, modify, and delete parameters, and supports optional cross-region replication for redundancy.

    Read more on my blog: dominik.wombacher.cc/posts/par

    #AWS #Go #GoLang #CLI #OpenSource #ParameterStore #DevOps #SecretManagement

  22. I released params2env, a Go based CLI tool I've built that reads AWS SSM Parameter Store values and sets them as environment variables.

    The tool can create, modify, and delete parameters, and supports optional cross-region replication for redundancy.

    Read more on my blog: dominik.wombacher.cc/posts/par

    #AWS #Go #GoLang #CLI #OpenSource #ParameterStore #DevOps #SecretManagement

  23. 🚀🎉 Hold the presses! #OpenBao adds "Namespaces" to its secret manager, enabling isolated environments for your secrets. 🤔 Finally, a solution to the problem of "Where did I put my secrets again?" 😅 Thanks, OpenBao, for making secret management feel like a game of hide-and-seek with a twist! 🙄🔍
    openbao.org/blog/namespaces-an #Namespaces #SecretManagement #IsolatedEnvironments #CyberSecurity #HackerNews #ngated

  24. 🚀🎉 Hold the presses! #OpenBao adds "Namespaces" to its secret manager, enabling isolated environments for your secrets. 🤔 Finally, a solution to the problem of "Where did I put my secrets again?" 😅 Thanks, OpenBao, for making secret management feel like a game of hide-and-seek with a twist! 🙄🔍
    openbao.org/blog/namespaces-an #Namespaces #SecretManagement #IsolatedEnvironments #CyberSecurity #HackerNews #ngated

  25. 🚀🎉 Hold the presses! #OpenBao adds "Namespaces" to its secret manager, enabling isolated environments for your secrets. 🤔 Finally, a solution to the problem of "Where did I put my secrets again?" 😅 Thanks, OpenBao, for making secret management feel like a game of hide-and-seek with a twist! 🙄🔍
    openbao.org/blog/namespaces-an #Namespaces #SecretManagement #IsolatedEnvironments #CyberSecurity #HackerNews #ngated

  26. 🚀🎉 Hold the presses! #OpenBao adds "Namespaces" to its secret manager, enabling isolated environments for your secrets. 🤔 Finally, a solution to the problem of "Where did I put my secrets again?" 😅 Thanks, OpenBao, for making secret management feel like a game of hide-and-seek with a twist! 🙄🔍
    openbao.org/blog/namespaces-an #Namespaces #SecretManagement #IsolatedEnvironments #CyberSecurity #HackerNews #ngated

  27. ....aaaaaand #OpenBao (the fork of #Hashicorp #Vault) is on its way to @opensuse #Tumbleweed in the latest version 2.2.1. Since 2.2.0 the webui is included in OpenBao, so this can be a full replacement for Vault!

    Looking forward to doing more testing with it!

    In case you want to try it out, here is a #vagrant #libvirt setup using #Ansible to prepare an OpenBao server VM and a client using a secret.
    codeberg.org/johanneskastl/ope

    #secretmanagement #kms #devops

  28. ....aaaaaand #OpenBao (the fork of #Hashicorp #Vault) is on its way to @opensuse #Tumbleweed in the latest version 2.2.1. Since 2.2.0 the webui is included in OpenBao, so this can be a full replacement for Vault!

    Looking forward to doing more testing with it!

    In case you want to try it out, here is a #vagrant #libvirt setup using #Ansible to prepare an OpenBao server VM and a client using a secret.
    codeberg.org/johanneskastl/ope

    #secretmanagement #kms #devops

  29. ....aaaaaand #OpenBao (the fork of #Hashicorp #Vault) is on its way to @opensuse #Tumbleweed in the latest version 2.2.1. Since 2.2.0 the webui is included in OpenBao, so this can be a full replacement for Vault!

    Looking forward to doing more testing with it!

    In case you want to try it out, here is a #vagrant #libvirt setup using #Ansible to prepare an OpenBao server VM and a client using a secret.
    codeberg.org/johanneskastl/ope

    #secretmanagement #kms #devops

  30. ....aaaaaand #OpenBao (the fork of #Hashicorp #Vault) is on its way to @opensuse #Tumbleweed in the latest version 2.2.1. Since 2.2.0 the webui is included in OpenBao, so this can be a full replacement for Vault!

    Looking forward to doing more testing with it!

    In case you want to try it out, here is a #vagrant #libvirt setup using #Ansible to prepare an OpenBao server VM and a client using a secret.
    codeberg.org/johanneskastl/ope

    #secretmanagement #kms #devops

  31. GitHub is shaking up code security after 39 million secrets leaked—now every team can access standalone tools backed by AI and major cloud partners. Curious how this could reshape digital protection?

    thedefendopsdiaries.com/github

    #githubsecurity
    #softwareprotection
    #secretmanagement
    #cybersecuritytools
    #infosec

  32. GitHub is shaking up code security after 39 million secrets leaked—now every team can access standalone tools backed by AI and major cloud partners. Curious how this could reshape digital protection?

    thedefendopsdiaries.com/github

    #githubsecurity
    #softwareprotection
    #secretmanagement
    #cybersecuritytools
    #infosec

  33. First @nixos_org challenge by the course of a month trying to get acquainted with #nix : secret management .

    Seems there’s absolutely no ‘batteries-included’ way to have this implemented the proper way, instead people have to come up with their own ‘hacks’ so-to-speak to get something feasible working…

    #nixos #nix #secretManagement #encryption #security #x86_64darwin #aarm64darwin

  34. First @nixos_org challenge by the course of a month trying to get acquainted with #nix : secret management .

    Seems there’s absolutely no ‘batteries-included’ way to have this implemented the proper way, instead people have to come up with their own ‘hacks’ so-to-speak to get something feasible working…

    #nixos #nix #secretManagement #encryption #security #x86_64darwin #aarm64darwin

  35. First @nixos_org challenge by the course of a month trying to get acquainted with #nix : secret management .

    Seems there’s absolutely no ‘batteries-included’ way to have this implemented the proper way, instead people have to come up with their own ‘hacks’ so-to-speak to get something feasible working…

    #nixos #nix #secretManagement #encryption #security #x86_64darwin #aarm64darwin

  36. First @nixos_org challenge by the course of a month trying to get acquainted with #nix : secret management .

    Seems there’s absolutely no ‘batteries-included’ way to have this implemented the proper way, instead people have to come up with their own ‘hacks’ so-to-speak to get something feasible working…

    #nixos #nix #secretManagement #encryption #security #x86_64darwin #aarm64darwin

  37. I‘m happy to announce the publication of my #PowerShell template module for #SecretManagement Extensions on GitHub. It enables the fast creation of new SecretManagement Extensions, including many best practices and (most important) a ReadMe which describes all pitfalls I’ve fallen into and the tricks to avoid this. All learned the hard way creating SecretManagement.NetwrixPasswordSecure 😋. If only one new extension based on the template is created the work was worth it.

    github.com/Callidus2000/Secret

  38. I‘m happy to announce the publication of my #PowerShell template module for #SecretManagement Extensions on GitHub. It enables the fast creation of new SecretManagement Extensions, including many best practices and (most important) a ReadMe which describes all pitfalls I’ve fallen into and the tricks to avoid this. All learned the hard way creating SecretManagement.NetwrixPasswordSecure 😋. If only one new extension based on the template is created the work was worth it.

    github.com/Callidus2000/Secret

  39. I‘m happy to announce the publication of my #PowerShell template module for #SecretManagement Extensions on GitHub. It enables the fast creation of new SecretManagement Extensions, including many best practices and (most important) a ReadMe which describes all pitfalls I’ve fallen into and the tricks to avoid this. All learned the hard way creating SecretManagement.NetwrixPasswordSecure 😋. If only one new extension based on the template is created the work was worth it.

    github.com/Callidus2000/Secret

  40. I‘m happy to announce the publication of my #PowerShell template module for #SecretManagement Extensions on GitHub. It enables the fast creation of new SecretManagement Extensions, including many best practices and (most important) a ReadMe which describes all pitfalls I’ve fallen into and the tricks to avoid this. All learned the hard way creating SecretManagement.NetwrixPasswordSecure 😋. If only one new extension based on the template is created the work was worth it.

    github.com/Callidus2000/Secret

  41. Is there an 'easy' way to call private #PowerShell functions from nested modules?

    I've got my module A with the nested module B. Now I've got a function (f) which is needed/usable from both A&B but makes no sense as a public function. Currently I've made it available as public A\f and can access it from everywhere.

    And the answer 'don't use nested modules' is sadly not acceptable as this is the design pattern for #SecretManagement extensions 😒

  42. Is there an 'easy' way to call private #PowerShell functions from nested modules?

    I've got my module A with the nested module B. Now I've got a function (f) which is needed/usable from both A&B but makes no sense as a public function. Currently I've made it available as public A\f and can access it from everywhere.

    And the answer 'don't use nested modules' is sadly not acceptable as this is the design pattern for #SecretManagement extensions 😒