website icon indicating copy to clipboard operation
website copied to clipboard

Add DevSecOps in Action: Kubernetes Secrets blog post

Open efrikin opened this issue 11 months ago • 23 comments

hello

This is a blog post about security Kubernetes Secret. The purpose to of this post is to inspire the reader to a small step towards integrating DevSecOps methodology in the development lifecycle.

efrikin avatar Mar 22 '24 10:03 efrikin

Welcome @efrikin!

It looks like this is your first PR to kubernetes/website 🎉. Please refer to our pull request process documentation to help your PR have a smooth ride to approval.

You will be prompted by a bot to use commands during the review process. Do not be afraid to follow the prompts! It is okay to experiment. Here is the bot commands documentation.

You can also check if kubernetes/website has its own contribution guidelines.

You may want to refer to our testing guide if you run into trouble with your tests not passing.

If you are having difficulty getting your pull request seen, please follow the recommended escalation practices. Also, for tips and tricks in the contribution process you may want to read the Kubernetes contributor cheat sheet. We want to make sure your contribution gets all the attention it needs!

Thank you, and welcome to Kubernetes. :smiley:

k8s-ci-robot avatar Mar 22 '24 10:03 k8s-ci-robot

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by: Once this PR has been reviewed and has the lgtm label, please assign nate-double-u for approval. For more information see the Kubernetes Code Review Process.

The full list of commands accepted by this bot can be found here.

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment Approvers can cancel approval by writing /approve cancel in a comment

k8s-ci-robot avatar Mar 22 '24 10:03 k8s-ci-robot

Pull request preview available for checking

Built without sensitive environment variables

Name Link
Latest commit 90588ecbfcb22035cb69490f986930a4bddb8405
Latest deploy log https://app.netlify.com/sites/kubernetes-io-main-staging/deploys/66eafa3e8b747e000997b2e7
Deploy Preview https://deploy-preview-45640--kubernetes-io-main-staging.netlify.app
Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site configuration.

netlify[bot] avatar Mar 22 '24 10:03 netlify[bot]

Thanks

/hold pending assignment of publication date

sftim avatar Mar 24 '24 17:03 sftim

hello, @dipesh-rawat and @sftim

Thanks for your answers! I applied your suggestions.

efrikin avatar Mar 25 '24 02:03 efrikin

Hello, @sftim @network-charles

Thank you for feedback and review! I appreciate it.

efrikin avatar Apr 17 '24 15:04 efrikin

Hello, @sftim @network-charles

Thank you for feedback and review! I appreciate it.

It's a pleasure.

network-charles avatar Apr 17 '24 16:04 network-charles

/test all

efrikin avatar Apr 19 '24 09:04 efrikin

@efrikin: Cannot trigger testing until a trusted user reviews the PR and leaves an /ok-to-test message.

In response to this:

/test all

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

k8s-ci-robot avatar Apr 19 '24 09:04 k8s-ci-robot

Hello @sftim

Can I find out about assignment of publication date?

efrikin avatar Apr 19 '24 09:04 efrikin

/sig security

reylejano avatar Apr 26 '24 16:04 reylejano

For a publication date, how about the 3rd of May? Let's see if we can make that work.

sftim avatar Apr 27 '24 15:04 sftim

For a publication date, how about the 3rd of May? Let's see if we can make that work.

Sure. Sounds great!

efrikin avatar Apr 28 '24 09:04 efrikin

Hello, @shannonxtreme

Thank you for your suggestions

efrikin avatar May 02 '24 04:05 efrikin

We'd like the YAML files to be served from this site, not from your own Git repo. Is that feasible?

I added YAML files to content/en/blog/_posts/2024-05-09-devsecops-in-action-k8s-secrets/kustomization/patches/

efrikin avatar May 03 '24 14:05 efrikin

hello @sftim

What about publication?

efrikin avatar May 13 '24 15:05 efrikin

/cc @sftim

efrikin avatar Jun 10 '24 15:06 efrikin

Hi @efrikin

The blog team is short on capacity recently. We can hope to have this reviewed within 6 weeks, maybe sooner.

sftim avatar Jun 10 '24 16:06 sftim

hello, @sftim

What about publish?

efrikin avatar Aug 29 '24 13:08 efrikin

Better to ask @kubernetes/sig-docs-blog-owners rather than an individual @efrikin.

How about 2024-09-17 as a publication date; let's see if we can hit that.

sftim avatar Sep 08 '24 14:09 sftim

Better to ask @kubernetes/sig-docs-blog-owners rather than an individual @efrikin.

How about 2024-09-17 as a publication date; let's see if we can hit that.

Hello, @sftim

Thank you for your answer!

Okay. I updated publication date.

efrikin avatar Sep 15 '24 10:09 efrikin

/label tide/merge-method-squash

sftim avatar Sep 15 '24 18:09 sftim

Hello, @sftim

Thank for your remarks! I applied your suggestion.

efrikin avatar Sep 18 '24 15:09 efrikin