<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>密钥管理 on 黄文卓 | DevOps Engineer</title><link>https://socake.github.io/tags/%E5%AF%86%E9%92%A5%E7%AE%A1%E7%90%86/</link><description>Recent content in 密钥管理 on 黄文卓 | DevOps Engineer</description><generator>Hugo -- gohugo.io</generator><language>zh-CN</language><managingEditor>17691281867@163.com (Wenzhuo Huang)</managingEditor><webMaster>17691281867@163.com (Wenzhuo Huang)</webMaster><copyright>© 2026 Wenzhuo Huang</copyright><lastBuildDate>Fri, 14 Nov 2025 10:00:00 +0800</lastBuildDate><atom:link href="https://socake.github.io/tags/%E5%AF%86%E9%92%A5%E7%AE%A1%E7%90%86/index.xml" rel="self" type="application/rss+xml"/><item><title>密钥自动轮换实战：Vault、AWS Secrets Manager 与 SOPS 的工程化方案</title><link>https://socake.github.io/posts/secret-rotation-automation/</link><pubDate>Fri, 14 Nov 2025 10:00:00 +0800</pubDate><author>17691281867@163.com (Wenzhuo Huang)</author><guid>https://socake.github.io/posts/secret-rotation-automation/</guid><description>一份来自生产环境的密钥轮换实战笔记：对比 Vault dynamic secret、AWS Secrets Manager 原生 rotation、SOPS + GitOps 三种方案的适用场景，给出数据库、Kafka SASL、TLS 证书、API key 的完整轮换工作流，并分享 ESO 同步、rotation 风暴、灰度发布等真实踩坑。</description><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://socake.github.io/posts/secret-rotation-automation/featured.jpg"/></item></channel></rss>