Profile cover photo
Profile photo
Schlomo Schapiro
500 followers -
Agile IT & Open Source Enthusiast
Agile IT & Open Source Enthusiast

500 followers
About
Schlomo Schapiro's posts

Post has attachment

Post has attachment

Post has attachment
Following up on "Lifting the Curse of Static Credentials", everybody should look closely at how they handle shared accounts, robot users or technical logins. Do you really rotate passwords, tokens and keys each time somebody who had access to the account leaves your team or the company? Do you know who has access? How do you know that they didn't pass on those credentials or put them in an unsafe place?

This concept shows a way how to get rid of static credentials for 3rd party applications in an enterprise context. Step 1 is getting rid of passwords for shared accounts and step 2 is getting rid of API access tokens.

Post has attachment

Post has attachment

Post has attachment

To all who "do" #DevOps: Who has root access on your servers?

Is there a relationship? Please vote at https://twitter.com/schlomoschapiro/status/869215416589193217

Post has attachment

Post has attachment

Post has attachment
Wait while more posts are being loaded