Distribute Registry credentials across namespaces with ClusterExternalSecret
Keep the credential in Vault, select namespaces with labels, and verify both Secret delivery and real image pulls.
Tag · 6 stories
Keep the credential in Vault, select namespaces with labels, and verify both Secret delivery and real image pulls.
I use my GitOps repository as shared working notes, so AI can understand the current setup before helping with changes, validation, and writing.
Running Airflow with Argo CD, Helm, Vault, and External Secrets on my home Kubernetes cluster.
Encrypt Kubernetes Secret values in Git and let the GitOps controller decrypt them during deployment.
A practical GitOps bootstrap flow for my RKE-based home Kubernetes infrastructure.
The checklist I use before Argo CD can safely take over a Kubernetes cluster.