Victor Kazakov

Providing Gateway Container Variables Securely in AWS

Discussion created by Victor Kazakov Employee on Jun 21, 2018
Latest reply on Jul 9, 2018 by Marlos.Chida

This discussions comes from the idea posted here: PROTECT GATEWAY DOCKER VARIABLES 


Essentially, how do you provide secrets to the gateway in a secure way when it is hosted as a container in AWS? How can the AWS Secret Manager be used.

Passwords ideally should not be stored in external files (such as docker-compose files), container files (such as docker-secrets, that get permanently mounted at "/run/secrets" during the entire container lifecycle), or container environment variables (visible to container shell and "docker-inspect-like" commands).