From the course: Certified Kubernetes Application Developer (CKAD) Cert Prep

Unlock this course with a free trial

Join today to access over 25,500 courses taught by industry experts.

Secrets

Secrets

- Closely related to the ConfigMap, we have the secret. A secret is a base-64 encoded alternative for a ConfigMap. Base-64 encoded, that means that the contents of a secret is not directly readable, but it's not the same as encrypted. It's pretty easy to decode. Keep that in mind. A secret is not really secret. Secret types are used for typical scenarios. We have three of them. There is a generic secret. The generic secret is used for generic sensitive values like passwords. It's basically the alternative for a ConfigMap. Everything you do with a ConfigMap can be done with a generic secret. TLS is a specific type that allows you to store TLS keys. We have docker-registry, which is used to store registry access credentials. You should know that docker-registry also works for other registries, because it's a standard mechanism, how you authenticate on different registries. Now, using secrets makes Kubernetes more secure, as the actual value itself doesn't have to be stored in the…

Contents