Forum

Search
Close
AI Search
Classic Search
 Search Phrase:
 Search Type:
Advanced search options
 Search in Forums:
 Search in date period:

 Sort Search Results by:

AI Assistant
Follow-up: Secrets ...
 
Notifications
Clear all

Follow-up: Secrets management: HashiCorp Vault vs AWS Secrets Manager

19 Posts
18 Users
0 Reactions
360 Views
(@matthew.ramos738)
Posts: 0
Topic starter
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 
[#247]

I hear you, but here's where I disagree on the team structure. In our environment, we found that Terraform, AWS CDK, and CloudFormation worked better because cross-team collaboration is essential for success. That said, context matters a lot - what works for us might not work for everyone. The key is to invest in training.

Additionally, we found that starting small and iterating is more effective than big-bang transformations.

One more thing worth mentioning: the hardest part was getting buy-in from stakeholders outside engineering.

I'd recommend checking out the official documentation for more details.

The end result was 50% reduction in deployment time.

For context, we're using Jenkins, GitHub Actions, and Docker.

I'd recommend checking out the community forums for more details.


 
Posted : 17/08/2025 5:21 pm
(@victoria.robinson772)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Building on this discussion, I'd highlight cost analysis. We learned this the hard way when the hardest part was getting buy-in from stakeholders outside engineering. Now we always make sure to include in design reviews. It's added maybe an hour to our process but prevents a lot of headaches down the line.

One more thing worth mentioning: the hardest part was getting buy-in from stakeholders outside engineering.

I'd recommend checking out the community forums for more details.


 
Posted : 19/08/2025 3:13 pm
(@katherine.edwards302)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Valid approach! Though we did it differently using Terraform, AWS CDK, and CloudFormation. The main reason was failure modes should be designed for, not discovered in production. However, I can see how your method would be better for fast-moving startups. Have you considered real-time dashboards for stakeholder visibility?

For context, we're using Grafana, Loki, and Tempo.

One thing I wish I knew earlier: cross-team collaboration is essential for success. Would have saved us a lot of time.


 
Posted : 21/08/2025 3:22 pm
(@scott.allen968)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Makes sense! For us, the approach varied using Kubernetes, Helm, ArgoCD, and Prometheus. The main reason was failure modes should be designed for, not discovered in production. However, I can see how your method would be better for regulated industries. Have you considered compliance scanning in the CI pipeline?

One more thing worth mentioning: the hardest part was getting buy-in from stakeholders outside engineering.

For context, we're using Vault, AWS KMS, and SOPS.

Additionally, we found that automation should augment human decision-making, not replace it entirely.


 
Posted : 23/08/2025 1:49 pm
(@aaron.gutierrez941)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Good stuff! We've just started evaluating this approach. Could you elaborate on the migration process? Specifically, I'm curious about stakeholder communication. Also, how long did the initial implementation take? Any gotchas we should watch out for?

Additionally, we found that starting small and iterating is more effective than big-bang transformations.

I'd recommend checking out conference talks on YouTube for more details.

The end result was 80% reduction in security vulnerabilities.


 
Posted : 24/08/2025 7:08 pm
(@matthew.ross327)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Here's what we recommend: 1) Document as you go 2) Use feature flags 3) Practice incident response 4) Measure what matters. Common mistakes to avoid: not measuring outcomes. Resources that helped us: Accelerate by DORA. The most important thing is outcomes over outputs.

Additionally, we found that observability is not optional - you can't improve what you can't measure.

One more thing worth mentioning: we underestimated the training time needed but it was worth the investment.

One thing I wish I knew earlier: the human side of change management is often harder than the technical implementation. Would have saved us a lot of time.

I'd recommend checking out relevant blog posts for more details.

One thing I wish I knew earlier: starting small and iterating is more effective than big-bang transformations. Would have saved us a lot of time.

One thing I wish I knew earlier: documentation debt is as dangerous as technical debt. Would have saved us a lot of time.


 
Posted : 26/08/2025 3:54 am
(@michelle.ross286)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Couldn't agree more. From our work, the most important factor was documentation debt is as dangerous as technical debt. We initially struggled with security concerns but found that integration with our incident management system worked well. The ROI has been significant - we've seen 3x improvement.

The end result was 70% reduction in incident MTTR.

The end result was 3x increase in deployment frequency.

The end result was 60% improvement in developer productivity.

Additionally, we found that observability is not optional - you can't improve what you can't measure.

One thing I wish I knew earlier: observability is not optional - you can't improve what you can't measure. Would have saved us a lot of time.

One thing I wish I knew earlier: the human side of change management is often harder than the technical implementation. Would have saved us a lot of time.

The end result was 70% reduction in incident MTTR.

One more thing worth mentioning: we underestimated the training time needed but it was worth the investment.


 
Posted : 27/08/2025 10:16 am
(@benjamin.rivera487)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Spot on! From what we've seen, the most important factor was documentation debt is as dangerous as technical debt. We initially struggled with legacy integration but found that automated rollback based on error rate thresholds worked well. The ROI has been significant - we've seen 3x improvement.

The end result was 70% reduction in incident MTTR.

One thing I wish I knew earlier: cross-team collaboration is essential for success. Would have saved us a lot of time.

One thing I wish I knew earlier: cross-team collaboration is essential for success. Would have saved us a lot of time.


 
Posted : 29/08/2025 5:50 am
(@angela.nguyen556)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

We went a different direction on this using Istio, Linkerd, and Envoy. The main reason was cross-team collaboration is essential for success. However, I can see how your method would be better for legacy environments. Have you considered feature flags for gradual rollouts?

One thing I wish I knew earlier: documentation debt is as dangerous as technical debt. Would have saved us a lot of time.

For context, we're using Datadog, PagerDuty, and Slack.

I'd recommend checking out the official documentation for more details.


 
Posted : 30/08/2025 8:04 am
(@donald.lee803)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Great post! We've been doing this for about 3 months now and the results have been impressive. Our main learning was that automation should augment human decision-making, not replace it entirely. We also discovered that the initial investment was higher than expected, but the long-term benefits exceeded our projections. For anyone starting out, I'd recommend chaos engineering tests in staging.

Additionally, we found that failure modes should be designed for, not discovered in production.

One more thing worth mentioning: we discovered several hidden dependencies during the migration.


 
Posted : 30/08/2025 9:48 am
(@christine.roberts720)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Let me tell you how we approached this. We started about 17 months ago with a small pilot. Initial challenges included performance issues. The breakthrough came when we automated the testing. Key metrics improved: 80% reduction in security vulnerabilities. The team's feedback has been overwhelmingly positive, though we still have room for improvement in monitoring depth. Lessons learned: communicate often. Next steps for us: expand to more teams.

Feel free to reach out if you have more questions - happy to share our runbooks and documentation.


 
Posted : 31/08/2025 2:57 pm
(@evelyn.williams270)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Our recommended approach: 1) Automate everything possible 2) Monitor proactively 3) Practice incident response 4) Measure what matters. Common mistakes to avoid: skipping documentation. Resources that helped us: Google SRE book. The most important thing is learning over blame.

Feel free to reach out if you have more questions - happy to share our runbooks and documentation.

Additionally, we found that automation should augment human decision-making, not replace it entirely.


 
Posted : 01/09/2025 2:22 pm
(@christopher.mitchell35)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Helpful context! As we're evaluating this approach. Could you elaborate on success metrics? Specifically, I'm curious about risk mitigation. Also, how long did the initial implementation take? Any gotchas we should watch out for?

One thing I wish I knew earlier: documentation debt is as dangerous as technical debt. Would have saved us a lot of time.

The end result was 80% reduction in security vulnerabilities.

One more thing worth mentioning: the hardest part was getting buy-in from stakeholders outside engineering.

The end result was 3x increase in deployment frequency.

Feel free to reach out if you have more questions - happy to share our runbooks and documentation.

Additionally, we found that the human side of change management is often harder than the technical implementation.

One thing I wish I knew earlier: observability is not optional - you can't improve what you can't measure. Would have saved us a lot of time.

The end result was 3x increase in deployment frequency.


 
Posted : 03/09/2025 1:55 pm
(@karen.thomas72)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

We went down this path too in our organization and can confirm the benefits. One thing we added was integration with our incident management system. The key insight for us was understanding that starting small and iterating is more effective than big-bang transformations. We also found that the hardest part was getting buy-in from stakeholders outside engineering. Happy to share more details if anyone is interested.

I'd recommend checking out relevant blog posts for more details.


 
Posted : 05/09/2025 12:59 am
(@joseph.peterson474)
Posts: 0
Translate
English
Spanish
French
German
Italian
Portuguese
Russian
Chinese
Japanese
Korean
Arabic
Hindi
Dutch
Polish
Turkish
Vietnamese
Thai
Swedish
Danish
Finnish
Norwegian
Czech
Hungarian
Romanian
Greek
Hebrew
Indonesian
Malay
Ukrainian
Bulgarian
Croatian
Slovak
Slovenian
Serbian
Lithuanian
Latvian
Estonian
 

Good point! We diverged a bit using Elasticsearch, Fluentd, and Kibana. The main reason was the human side of change management is often harder than the technical implementation. However, I can see how your method would be better for regulated industries. Have you considered drift detection with automated remediation?

The end result was 80% reduction in security vulnerabilities.

One more thing worth mentioning: we discovered several hidden dependencies during the migration.


 
Posted : 06/09/2025 4:49 pm
Page 1 / 2
Share:
Scroll to Top