Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's all chef-based so we could be using encrypted databags, but as anybody with access to the repo has root on the machines anyways, there's little to gain there as well, especially given the very limited security implications. I'd be more worried that somebody adds his account to the sudoers list that stealing the secret data. But hey, things were that way when I joined and there's better places to spend my time to improve security.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: