From 6e86e1c9832447f6640713de2327dcd91a6b9fd8 Mon Sep 17 00:00:00 2001 From: Florian RICHER Date: Thu, 17 Apr 2025 17:28:30 +0200 Subject: [PATCH] sealed_secrets: Add more tips --- sealed_secrets/README.md | 26 ++++++++++++++++++++------ 1 file changed, 20 insertions(+), 6 deletions(-) diff --git a/sealed_secrets/README.md b/sealed_secrets/README.md index c4f64aa..ffa9ff6 100644 --- a/sealed_secrets/README.md +++ b/sealed_secrets/README.md @@ -13,16 +13,30 @@ helm install sealed-secrets sealed-secrets/sealed-secrets -f helm/values 2. Create a secret ```console -kubectl create secret generic sealed-test-secret --dry-run=client --from-env-file=secrets/mysecrets.env -o yaml | kubeseal \ +kubectl create secret generic --dry-run=client --from-env-file= -o yaml | kubeseal \ --controller-name=sealed-secrets \ - --controller-namespace=default \ - --format yaml + --controller-namespace= \ + --format yaml \ + -n ``` OR ```console -echo -n "MySecret" | kubeseal --raw --name sealed-test-secret \ +echo -n "MySecret" | kubeseal --raw --name \ --controller-name=sealed-secrets \ - --controller-namespace=default -``` \ No newline at end of file + --controller-namespace= \ + -n +``` + +3. Validate encrypted data + +``` +cat | kubeseal --validate --controller-name=sealed-secrets --controller-namespace= +``` + +4. Check status of sealed secret + +``` +kubectl describe sealedsecrets.bitnami.com/ -n +```