Secret cleanup: Grafana custom.ini and grafana.ini #128
Loading…
Reference in New Issue
Block a user
No description provided.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
The files custom.ini and grafana.ini contain plaintext secrets for Keycloak OAuth, SMTP, and some other signing keys whose purpose I don't fully understand.
Actions taken:
Per
993c23a995
we have moved configuration of Grafana'scustom.ini
out of version control and documented the new process.The Keycloak client secret has been rotated and tested.
Good to go.
Per docs:
Alright, that key was still in use. Gotta rotate that too.
custom.ini
, rebooted the container.