Advanced Secret Handling in Kubernetes Application with HashiCorp Vault

dc.contributorAalto-yliopistofi
dc.contributorAalto Universityen
dc.contributor.advisorTorvinen, Vesa
dc.contributor.authorHamid, Maryum
dc.contributor.schoolPerustieteiden korkeakoulufi
dc.contributor.supervisorAura, Tuomas
dc.date.accessioned2023-09-03T17:02:52Z
dc.date.available2023-09-03T17:02:52Z
dc.date.issued2023-08-21
dc.description.abstractIn the era of microservices and cloud-based systems, safeguarding sensitive credentials has become a critical concern for modern businesses. This thesis delves into the application of HashiCorp Vault, a prominent tool for secure secret management, within the domain of telecommunication networks, renowned for managing tens of thousands of nodes. Through a case study approach, this research explores Vault's core components, security features, and disaster recovery mechanisms, with a specific focus on integrating them into existing telecommunication systems. A thorough examination of technical documentation, academic literature, and industry reports reveals fundamental concepts and best practices in credential management. Additionally, this study provides a comprehensive analysis of the system architecture of telecom management systems, showcasing how HashiCorp Vault's capabilities bolster security, ensure compliance, and sustain business continuity in large-scale networks. Nevertheless, the thesis also addresses the implications of integrating HashiCorp Vault into the system architecture, including potential challenges tied to complexity and the need for meticulous key management for such extensive credentials. The findings emphasize the necessity of a balanced approach, prioritizing both automation and security. Vigilant monitoring, alerting, and maintenance practices are paramount. As a conclusion, this thesis proposes promising avenues for future research, envisioning the integration of artificial intelligence, machine learning, and blockchain technologies in credential management systems. These advancements hold the potential to further enhance the security landscape for telecommunication networks and beyond.en
dc.format.extent76
dc.identifier.urihttps://aaltodoc.aalto.fi/handle/123456789/123156
dc.identifier.urnURN:NBN:fi:aalto-202309035493
dc.language.isoenen
dc.programmeMaster’s Programme in Security and Cloud Computing (SECCLO)fi
dc.programme.majorSecurity and Cloud Computingfi
dc.programme.mcodeSCI3113fi
dc.subject.keywordHashiCorp Vaulten
dc.subject.keywordkubernetesen
dc.subject.keywordkey management systemen
dc.subject.keywordmaster keyen
dc.titleAdvanced Secret Handling in Kubernetes Application with HashiCorp Vaulten
dc.typeG2 Pro gradu, diplomityöfi
dc.type.ontasotMaster's thesisen
dc.type.ontasotDiplomityöfi
local.aalto.electroniconlyyes
local.aalto.openaccessno

Files