-
Notifications
You must be signed in to change notification settings - Fork 59
Open
Description
Hi Folks
On the one hand, GitOps increase the security itself through limitation to a minimum of administrative access to infrastructure and configuration, eliminate human error, an audit of any change, declarative single source of truth, automatic verification, and policy enforcement. Using GitOps tools and technologies, organizations can mitigate the vectors of attack by reducing the number of people and machines that have access to the target system.
On the other hand, more attention should be paid to securing Git repositories and CI/CD processes.
I would like to open a discussion about the security of GitOps and in particular what are the best security practices. And as a result create a dedicated document.
scottrigby and gdmoneypjbgf and scottrigbychris-short and pjbgf
Metadata
Metadata
Assignees
Labels
No labels