ForgeOps

Security

This topic describes some security options in a ForgeOps deployment:

Topic Description

Secure Communications

Secure HTTP and certificate management.

IP Address Restriction

Access restriction by incoming IP address, enforced by the ingress controller.

Network Policies

Secure cross-pod communications, enforced by Kubernetes network policies.

Cluster Access on AWS

User entries in the Amazon EKS authorization configuration map.

Secret Agent

Kubernetes operator that generates secrets and provides cloud secret management.

Helm Generated Secrets

Helm-generated secrets for ForgeOps deployments.

Rotate Secrets

Rotate secrets in a ForgeOps deployment.

New security features

New ForgeOps security features.

Helm-based secrets

Migrate a ForgeOps deployment to use Helm-based secrets.