Sign inSign up

cmattoon/aws-ssm

By cmattoon

•Updated over 5 years ago

Populates Kubernetes Secrets from AWS Parameter Store

Image
1

500K+

cmattoon/aws-ssm repository overview

Populates Kubernetes Secrets from AWS SSM

Create an empty Secret with the following annotations

apiVersion: v1
kind: Secret
metadata:
  name: my-secret
  annotations:
    "alpha.ssm.cmattoon.com/k8s-secret-name": my-secret
    "alpha.ssm.cmattoon.com/aws-param-name": my_value
    "alpha.ssm.cmattoon.com/aws-param-type": SecureString
    "alpha.ssm.cmattoon.com/aws-param-key": "alias/aws/ssm"
data: {}

And data.$ParamType will be set to the Base64-encoded value obtained from SSM.

apiVersion: v1
kind: Secret
metadata:
  name: my-secret
  annotations:
    "alpha.ssm.cmattoon.com/k8s-secret-name": my-secret
    "alpha.ssm.cmattoon.com/aws-param-name": my_value
    "alpha.ssm.cmattoon.com/aws-param-type": SecureString
    "alpha.ssm.cmattoon.com/aws-param-key": "alias/aws/ssm"
data:
  SecureString: foobar

If $ParamType=StringList, the list will be parsed as key-value pairs (key1=val1,key2=val2,key3=val3,...). These will be added to data as well, resulting in the following keys being populated:

data:
    StringList: <b64encoded_everything>
    key1: <b64encoded_val1>
    key2: <b64encoded_val2>
    key3: <b64encoded_val3>

Tag summary

Content type

Image

Digest

Size

41.1 MB

Last updated

over 5 years ago

docker pull cmattoon/aws-ssm