Главная
Study mode:
on
1
Intro
2
Definition
3
Secrets
4
Passwords
5
Tokens
6
Keys
7
Slow
8
Fast
9
Properties
10
Surfaces
11
Brute Force
12
Code Leak
13
Backup Leak
14
Traversal
15
An Aside
16
Code Exec
17
Laptop Theft
18
Higher Power
19
Text Files
20
git-crypt
21
Asymmetric
22
Cluster Managers
23
Chef Encrypted Bags
24
Ansible Vault
25
Chef Vault
26
Pre-encryption
27
Hashicorp Vault
28
Private S3
29
Amazon KMS
30
Sneaker
31
Confidant
32
Trousseau
33
Red October
34
Barbican
35
Conjur
36
Pure Identity
37
Config Management
38
Consul Templates
39
Summon
Description:
Explore the critical topic of password and secret management in modern applications during this 28-minute EuroPython Conference talk. Delve into the various types of secrets, including encryption keys, database passwords, and API credentials, and learn about the emerging tools designed to manage, update, and audit these sensitive pieces of information. Discover best practices for avoiding security breaches and protecting your application's crucial data. Gain insights into modeling security properties for different types of secrets, selecting appropriate tools for various situations, and implementing them within major web frameworks. Examine the evolving landscape of threats and learn how to safeguard your application against potential vulnerabilities in an era of config automation and ephemeral microservices.

Behind Closed Doors - Managing Passwords in a Dangerous World

EuroPython Conference
Add to list