shollyethan, to selfhosted
@shollyethan@fosstodon.org avatar

This Week in Self-Hosted (10 May 2024)

Project activity, software launches, updates, a spotlight on - a one-time, self-destructing messaging service, and more in this week's self-hosted recap!

https://selfh.st/newsletter/2024-05-10/

robert, to IBM
@robert@flownative.social avatar

IBM buys HashiCorp for 6,4 billion USD.

It probably was a good idea, that some of the most important Open Source products were already forked some time ago.

Sigh.

https://www.prnewswire.com/news-releases/ibm-to-acquire-hashicorp-inc-creating-a-comprehensive-end-to-end-hybrid-cloud-platform-302126646.html

#HashiCorp #IBM #Terraform #Vault

giorgiolucas, to Norway
@giorgiolucas@techhub.social avatar
framasky, to random French
@framasky@framapiaf.org avatar

J’ai enfin trouvé ce qui coinçait avec les dernières versions de : il faut MySQL 8, MariaDB n’est pas compatible.

Envkey est un service web permettant de partager des secrets de façon sécurisée.
Intérêt : vous intégrez le module envkey de votre langage dans votre projet, un fichier .envkey pour dire quels secrets récupérer et vous n’avez plus besoin qu’une variable d’environnement ENVKEY (ça, on commite pas) pour avoir accès à vos secrets depuis votre code

https://envkey.com/

framasky,
@framasky@framapiaf.org avatar

est un peu perturbant au début car il n’y a pas d’interface web. Il y a des clients desktop ou CLI et un serveur d’API.

Je pense qu’il peut être bien pratique !

NB : je l’ai trouvé en cherchant un remplaçant au d’ quand ils ont changé la licence. Non pas que je l’utilisais avant, mais ça fait partie de mon taf de faire de la veille technologique.

jwildeboer, (edited ) to random
@jwildeboer@social.wildeboer.net avatar

My newest weird conspiracy theory: A lot of those electronic door locks use a backend system which is called the Tuya app. It's an internet based service where you register yourself and your locks so you can "conveniently" control and lock/unlock "your" doors from everywhere. So the Tuya backend is technically able to unlock a lot of doors and it has geolocation data on all of these locks. What could possibly go wrong?

slink,
@slink@fosstodon.org avatar

@jwildeboer @yacc143 @lobingera also: a can not exist in a .

fosslife, to security
@fosslife@fosstodon.org avatar

OpenBAO project launched to maintain open source version of HashiCorp's Vault security software https://www.fosslife.org/openbao-project-forks-hashicorps-vault

sushee, to random
@sushee@fosstodon.org avatar
jakehamilton, to foss
@jakehamilton@hachyderm.io avatar
smallcircles, to terraform
@smallcircles@social.coop avatar

After , now it is the turn for - the popular secrets-management project by - to be forked and relicensed from to . The new project will be named and same as its terraform-cousin be part of .

https://www.theregister.com/2023/12/08/hashicorp_openbao_fork/

https://wiki.lfedge.org/display/OH/OpenBao+%28Hashicorp+Vault+Fork+effort%29+FAQ

shochdoerfer, to random German
@shochdoerfer@phpc.social avatar

One week to go for Hashiconf! YEAH!

I am really excited to attend Hashiconf in San Fransico for the first time! As a long-time user of tools like Nomad, Vault, and Consul, I cannot wait to meet the teams behind the different tools and learn more about them. Nomad has powered the @bitexpert internal infrastructure for a few years now. Vault & Consul perfectly complement that stack.

vwbusguy, to opensource
@vwbusguy@mastodon.online avatar

Idea: An manager, with a fancy web UI like , that can organize secrets by folders and deployment target (dev, staging, prod) and the CLI tool can translate those folders, keys, and values into structured YAML or JSON output in addition to environment variables. Additionally, it can import secrets into new projects with structure YAML/JSON into the format.

Something like this for the data backend: https://github.com/smithjm/etcd-export

vwbusguy, to Kubernetes
@vwbusguy@mastodon.online avatar

But why?

Trying to decide if I want to commit to writing and publishing a chart for the API server.

vwbusguy,
@vwbusguy@mastodon.online avatar

@giffengrabber I agree to all of the above. The fact that existed and was so ubiquitous for so long has meant that other FOSS competition just hasn't matured at the same pace.

There is absolutely a business opportunity here for a fully FOSS, commercially supported key manager. If it has a clean web UI and CLI; can run on/integrate with cloud envs, kubernetes, and CI/CD environments; and supports RBAC, it'll become popular real fast.

vwbusguy, to RedHat
@vwbusguy@mastodon.online avatar

To those who are concerned that I'm going to talk about nothing but for weeks, don't be. I was harder on , not because I think that Red Hat had done something worse (they didn't), but rather that I frankly care about Red Hat more. The shop where I work is also a Hashicorp customer, but that relationship is far more expendable, IMO, and I had hopes that some in Red Hat would hear and consider feedback where I generally don't believe that to be the case for Hashicorp.

vwbusguy,
@vwbusguy@mastodon.online avatar

That said, I am happy to advocate for truly forks or alternatives to products and may continue to post about my own experiences with migrating to other things. Keep in mind that my use cases may be different from yours, but if you're stuck on how to replace , , etc, speak up and let the OSS community help you find what you need. There is plenty of opportunity in the midst of this tragedy and the story of open source, free or commercial, is far from over.

vwbusguy, (edited ) to opensource
@vwbusguy@mastodon.online avatar

I may have found an Vault alternative called . Going to kick to tires on it on Monday.

EDIT- I may have found better options. See the thread.

https://www.conjur.org/

vwbusguy,
@vwbusguy@mastodon.online avatar

Can it be, a promising truly alternative? You can pay for hosting or on-prem support, but the stack appears to be fully FOSS and includes a webUI!

https://envkey.com/

soller, to random
@soller@fosstodon.org avatar

Another one bites the dust https://www.hashicorp.com/license-faq

andrew,

@vwbusguy @stdevel @soller yup also keeping an eye out for a fork. I literally just implemented it at work (the MPL-licensed version).

sandro, to random
@sandro@c3d2.social avatar

People often tell me that the doc is not that great but compared to the secrets operator from it is fantastic. There are like no explanations of things, mostly API docs. https://developer.hashicorp.com/vault/docs/platform/k8s/vso

There is also a "tutorial" which mostly consists of copy pasting commands and in the end you have a small example that works but you didn't really learn something.
https://developer.hashicorp.com/vault/tutorials/kubernetes/vault-secrets-operator

Or maybe someone needs to point my nose on the right things.

chimbosonic, to Blog
@chimbosonic@fosstodon.org avatar

Another blog post (perhaps I might do this daily?)
This time about Hashicorp vault and docker-compose secret management.
https://tilde.club/~chimbo/blog/posts/hashicorp-vault-and-docker-compose.html

Also had to update the blogging tool as bashblog didn't support code blocks so I'm using mdbook

Can’t Attend? Don’t Miss the Philadelphia Vault Tour Stream! (keyforging.com)

The KeyForge Vault Tour return is nearly upon us. In two weeks, Archons will descend upon Philadelphia, PA to take part in the first Vault Tour event since 2020! If you are unable to attend in person, don't worry! We are happy to announce that Tabletop Royale will be streaming the action

to3k, to android Polish
@blog.tomaszdunia.pl avatar

🇵🇱 Nowy wpis na blogu! / 🇬🇧 New blog post!

Cryptomator – vault in cloud [ENG 🇬🇧]

Autor: @to3k

https://blog.tomaszdunia.pl/cryptomator-eng/

to3k, to android Polish
@blog.tomaszdunia.pl avatar
cavanscott, to Starwars

time for anyone who’s new.

I’m a novelist, comic book writer & screenwriter living in the UK.

I am a story architect for and write a bunch of things inc. the comic for & the annual Halloween specials for .

I write Titans United for and Dead Seas for , The Ward for Dark Horse & Shadow Service for .

Away from work, I ❤️

  • All
  • Subscribed
  • Moderated
  • Favorites
  • provamag3
  • kavyap
  • DreamBathrooms
  • osvaldo12
  • magazineikmin
  • InstantRegret
  • everett
  • Youngstown
  • ngwrru68w68
  • slotface
  • rosin
  • GTA5RPClips
  • tester
  • PowerRangers
  • anitta
  • thenastyranch
  • mdbf
  • ethstaker
  • cisconetworking
  • Durango
  • vwfavf
  • normalnudes
  • tacticalgear
  • khanakhh
  • modclub
  • cubers
  • Leos
  • megavids
  • All magazines