The Jenkins X platform consists of a number of microservices running on Kubernetes, which work together to provide users a cloud-native CI/CD experience. In this talk, we will walk you through a number of security features and good practices that allow us to achieve a more secure Jenkins X setup.
The topics covered are:
- Learning about some security features available in Jenkins X.
- Ensuring your cluster is secure before the installation with the scan cluster command.
- Diving into the recommended configuration for a secure Jenkins X installation.
- Adopting best practices for handling secrets in Jenkins X pipeline.
- Managing secrets using the HashiCorp Vault integration.
- Configuring the single sign-on using the SSO add-on and operator easily.