Secure GitOps Workflows with GitHub Actions and HashiCorp Vault
Watch a live demo and Q&A session on using Vault password and secret rotation in a GitOps workflow via GitHub Actions.
Speakers
- John BohannonPartner Engineer, GitHub
- Justin WeissigVault Technical Marketing, HashiCorp
HashiCorp Vault Technical Marketer Justin Weissig and GitHub Partner Engineer John Bohannon will use this demo session to explore how you can leverage GitHub Actions with HashiCorp Vault in a modern GitOps workflow.
The Demo
The demo starts with an existing CI/CD pipeline, introduces the benefits that Vault and GitOps bring, and then integrate them into the pipeline. For the demo, they'll leverage this pipeline to deploy an example app into a Kubernetes cluster running on AWS.
Here are the GitHub repositories used in the demo:
- https://github.com/cakely/api
- https://github.com/cakely/api-ops
- https://github.com/cakely/vault-runner-setup
Video Sections
0:00 — About GitHub Actions and HashiCorp Vault
10:22 — GitOps with Dynamic Secrets using the Vault GitHub Action
30:20 — Live Q&A