Editing AWS Secrets Manager

Jump to navigation Jump to search

Warning: You are not logged in. Your IP address will be publicly visible if you make any edits. If you log in or create an account, your edits will be attributed to your username, along with other benefits.

The edit can be undone. Please check the comparison below to verify that this is what you want to do, and then save the changes below to finish undoing the edit.

Latest revision Your text
Line 3: Line 3:
 
* [[Free tier]]: 30 days
 
* [[Free tier]]: 30 days
  
[[Secrets rotation]] featured:  
+
Secrets rotation feautured:  
 
* [[Amazon Aurora]] on Amazon RDS
 
* [[Amazon Aurora]] on Amazon RDS
 
* [[MySQL]] on Amazon RDS
 
* [[MySQL]] on Amazon RDS
Line 10: Line 10:
 
* MariaDB on Amazon RDS
 
* MariaDB on Amazon RDS
 
* Microsoft SQL Server on Amazon RDS
 
* Microsoft SQL Server on Amazon RDS
 
 
=== Secret Types ===
 
* [[AWS credentials]]: AWS Identity and Access Management ([[IAM]])
 
* [[Encryption]] keys: [[KMS]]
 
* [[SSH]] keys
 
* [[Private keys]] and [[certificates]]
 
 
=== Automatic Rotation ===
 
* [[Granular control]]: Define custom rotation schedules (e.g., daily, weekly).
 
* Integration with [[AWS Lambda]]: Automate tasks during rotation, such as notifying admins or updating dependent systems.
 
 
=== Fine-grained Access Control ===
 
* [[IAM policies]]: Define granular permissions for different users and applications(e.g., view only vs. read/write).
 
* [[Secret versions]]: Maintain a history of past versions.
 
 
=== Audit and Monitor Secrets Usage ===
 
* Integration with [[AWS CloudTrail]]: Logs API calls to Secrets Manager, eg: <code>[[GetSecretValue]]</code>
 
* [[CloudWatch]] integration
 
  
 
== Related terms ==
 
== Related terms ==
 
* [[Private key]]
 
* [[Private key]]
* AWS Manage policy:  
+
* AWS Manage policy: <code>[[SecretsManagerReadWrite]]</code>
** <code>[[SecretsManagerReadWrite]]</code>
 
** <code>[[secretsmanager:GetSecretValue]]</code>
 
 
* [[AWS Config]]
 
* [[AWS Config]]
 
* [[AWS CloudFormation]]
 
* [[AWS CloudFormation]]
 
* [[AWS Systems Manager Parameter Store]] (Dec 2016)
 
* [[AWS Systems Manager Parameter Store]] (Dec 2016)
 
* [[AWS Fargate]]
 
* [[AWS Fargate]]
* [[Terraform resource: aws_secretsmanager_secret]]
 
* Terraform resource: <code>[[aws_secretsmanager_secret_version]]</code>
 
* [[Terraform secretsmanager]]
 
* <code>[[secrets =]]</code>
 
* [[AWS Lambda]]
 
  
 
== Activities ==
 
== Activities ==
 
* Read https://aws.amazon.com/secrets-manager/faqs/
 
* Read https://aws.amazon.com/secrets-manager/faqs/
 
* Read Fargate with [[Secret Manager]] https://awscloudsecvirtualevent.com/workshops/module4/fargate/
 
* Read Fargate with [[Secret Manager]] https://awscloudsecvirtualevent.com/workshops/module4/fargate/
* [https://docs.aws.amazon.com/secretsmanager/latest/userguide/hardcoded.html Move hardcoded secrets to AWS Secrets Manager]
 
* [https://docs.aws.amazon.com/secretsmanager/latest/userguide/hardcoded-db-creds.html Move hardcoded database credentials to AWS Secrets Manager]
 
* [https://docs.aws.amazon.com/secretsmanager/latest/userguide/tutorials_rotation-alternating.html Set up alternating users rotation for AWS Secrets Manager]
 
* [https://docs.aws.amazon.com/secretsmanager/latest/userguide/tutorials_rotation-single.html Set up single user rotation for AWS Secrets Manager]
 
* [https://docs.aws.amazon.com/secretsmanager/latest/userguide/cfn-example_secret.html Create an AWS Secrets Manager secret with AWS CloudFormation]
 
  
 
== See also ==
 
== See also ==
 
* {{aws secretsmanager}}
 
* {{aws secretsmanager}}
 
* {{Secrets}}
 
* {{Secrets}}
 +
* {{AWS security}}
  
 
[[Category:AWS]]
 
[[Category:AWS]]

Please note that all contributions to wikieduonline may be edited, altered, or removed by other contributors. If you do not want your writing to be edited mercilessly, then do not submit it here.
You are also promising us that you wrote this yourself, or copied it from a public domain or similar free resource (see Wikieduonline:Copyrights for details). Do not submit copyrighted work without permission!

Cancel Editing help (opens in new window)

Templates used on this page:

Advertising: