cf-for-k8s
cf-for-k8s copied to clipboard
Platform engineers want cf-for-k8s to generate passwords automatically
Summary
This feature enables the generation of passwords in the cluster. With this feature, Platform engineers are relieved of manually passing a password or (or running the hack script). e.g. cf-admin-password is one such property.
Intended Outcome
It enhances the Platform engineer's experience and relieves them from generating or rotating passwords in the future (see another Feature request on password rotation).
How will it work
Use the Quarks project to generate and rotate passwords. Credhub team is helping with the research.
We have created an issue in Pivotal Tracker to manage this:
https://www.pivotaltracker.com/story/show/174184762
The labels on this github issue will be updated when the story is started.
We recently added "experimental" support for Quarks Secret to demonstrate that secrets, in general, and password specifically can be generated automatically by the deployment.
This track of work is in progress and tracked under the epic of secrets management
cc track owner /@acosta11