Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

How We Made Static Credentials a Thing of the Past - Using OIDC in CI/CD Pipelines

USENIX via YouTube

Overview

Learn how Grafana Labs revolutionized their CI/CD pipeline security in this 29-minute conference talk from SREcon24 Europe/Middle East/Africa. Explore the journey from static secrets management to implementing OIDC-based access through GitHub Actions, creating a "secretless" system for cloud resource access. Discover practical strategies for developing shared jobs and abstractions that simplify secure access while maintaining robust security protocols. Gain insights from real-world challenges and lessons learned during implementation, including a detailed examination of security incidents and their resolutions. Master the techniques for transitioning to OIDC-based authentication that simultaneously enhances security measures and reduces operational complexity, benefiting both engineering teams and security requirements.

Syllabus

SREcon24 Europe/Middle East/Africa - I Can OIDC You Clearly Now: How We Made Static Credentials a...

Taught by

USENIX

Reviews

Start your review of How We Made Static Credentials a Thing of the Past - Using OIDC in CI/CD Pipelines

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.