E67: Automated Certificate Management with Smallstep

Topics covered
Popular Clips
Episode Highlights
Automation Evolution
The evolution of automation in DevOps has significantly transformed infrastructure solutions, with Smallstep leading the charge. explains that automation in certificate management is distinct due to the unique lifecycle of certificates, which often differ from the components they secure 1. This necessitates deeper integration with existing automation tools like Puppet, Chef, and Kubernetes operators. notes, "For certificates, you need to go a little bit deeper because these things don't sort of follow the lifecycle of the other components."
For certificates, you need to go a little bit deeper because these things don't sort of follow the lifecycle of the other components.
---
The journey of Smallstep began with an open-source project, which highlights as a unique approach compared to other open-core companies 2.
  Â
Certificates and Automation
Automating certificate management in DevOps environments presents specific challenges that Smallstep addresses effectively. emphasizes the importance of certificate lifecycle management as a separate process due to the ephemeral nature of modern infrastructure components 1. This complexity requires a tailored approach to automation, integrating with tools like Ansible and Terraform. states, "Certificate management is a special discipline. It's challenging and importantly there the core infrastructure to do certificate management for the sorts of environments and users that we were focused on for cloud native DevOps just didn't exist."
Certificate management is a special discipline. It's challenging and importantly there the core infrastructure to do certificate management for the sorts of environments and users that we were focused on for cloud native DevOps just didn't exist.
---
The open-source journey of Smallstep, as described by , involved building from scratch to meet the ecosystem's needs, focusing on authentication and security protocols like TLS 2.
Related Episodes


E160: Open Source Secrets Management with Infisical
Answers 383 questions

E144: How to Straddle Developers and Security Engineers
Answers 383 questions

E8: Open-Sourcing Business Applications; Calendso's Story
Answers 383 questions

E52: Learnings from Chef & the Future of Open Source
Answers 383 questions

E12: Open-Source Feature Management with Unleash
Answers 383 questions

E90: Building Open Source Startups with Abby Kearns
Answers 383 questions

E54: Learn Open Source Tools & Frameworks on CoRise
Answers 383 questions

E143: Bringing Software Engineering Best Practices to Data
Answers 383 questions

E148: Software Refactoring in the Age of AI
Answers 383 questions

E64: Open Source Data Observability with Elementary Data
Answers 383 questions

E47: Open Source Device Management with Fleet
Answers 383 questions

E57: Secure your Software Supply Chain with Chainguard
Answers 383 questions

E33: Evidently AI and Open Source Machine Learning Monitoring
Answers 383 questions

E26: Cube.dev - Open Source Headless BI for Building Data Apps
Answers 383 questions
