Kubernetes Security: 10 Best Practices from the Industry and Community
cast.ai
cast.ai
Was this generated by ML?
Environment variables seem to be the standard.
Direct dependency is usually bad and injecting files violates the immutable nature of a container.
1. DON'T keep secrets in an environment variable
It's a GOOD PRACTICE to have your objects use a secret in an environment variable
So which one is it? Don't keep secrets in env vars, or it's good practice to keep secrets in env vars?There really isn't a lot of structure here, although disabling NET_RAW is always a good tip (unless you're shoving telco workloads into containers, that is).