Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Implement external-secrets with the Bitwarden integration for user-related secrets #61

Open
mircea-pavel-anton opened this issue Oct 3, 2023 · 2 comments
Assignees
Labels
app/system An issue that involves deploying a new system application to the cluster.

Comments

@mircea-pavel-anton
Copy link
Collaborator

Currently, all secrets are managed locally using sops. This is ok for infra-related stuff, like tokens or webhook urls, but for user passwords and such, Bitwarden would be better.

References:

@mircea-pavel-anton mircea-pavel-anton self-assigned this Oct 3, 2023
@mircea-pavel-anton mircea-pavel-anton added the app/system An issue that involves deploying a new system application to the cluster. label Oct 9, 2023
@remkolems
Copy link

I believe you also use TrueNAS Scale, therefore with Truecharts Enterprise you could use vaultwarden (as I do now for the same reasons as you do). However contemplating on a more self-managed GitOps/IaC solution as Truecharts did make some unfortune braking changes in the past.

PS. Thank you BTW for https://mirceanton.com/posts/2023-11-28-the-best-os-for-kubernetes/ and https://youtu.be/4_U0KK-blXQ

@mircea-pavel-anton
Copy link
Collaborator Author

@remkolems Thanks for the suggestion!

I'm actually using TrueNAS Core, not Scale, as I don't really like the built-in k3s solution that much. I currently have a simple Talos VM on my TrueNAS Core server to host some utility services, and I am not 100% sure I want to self-host my vaultwarden instance tbh.

Also, not a huge fan of TrueCharts either :))

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
app/system An issue that involves deploying a new system application to the cluster.
Projects
None yet
Development

No branches or pull requests

2 participants