Budget: 20 EUR Deadline: 1 day
Good day.
Ready to collaborate.
Write in private messages for details
__________________________
Budget: 20 EUR Deadline: 1 day
Good day.
Ready to collaborate.
Write in private messages for details
__________________________
Budget: 20 EUR Deadline: 1 day
Good day, how many hours and what is your hourly rate, what are the requirements more specifically?
Budget: 20 EUR Deadline: 1 day
Good day!
I have experience and am ready to collaborate. Details in private messages.
Budget: 400 EUR Deadline: 1 day
Hello.
I am ready to help with your task.
For more details - please contact me in correspondence.
I will be waiting for your feedback.
Budget: 100 EUR Deadline: 1 day
Good afternoon.. Ready for a permanent position. Write to me directly in private messages.
Budget: 120 EUR Deadline: 1 day
Опыт более 5 лет
работаю с прод сервисами и high load services, Cloud, Containerization, Git, IAC, CI/CD, DR
As part of enhancing the cybersecurity level of our infrastructure, we need to abandon the practice of storing "eternal" and static API keys, passwords, and integration tokens in the configuration files (.env, appsettings.json, config.yaml) of our microservices. Business Goal: Create a single secure storage point for confidential data (secrets) with a mechanism for their automatic updating (rotation) in external systems on a schedule. Our other services will request current tokens "on the fly" via API, which will minimize damage in case of compromise of any system component.Security Model and Encryption (Crypto Core) No secret should be stored in plaintext in the database. Upon application startup, a Master Key is passed to the environment variables. If the key is missing or has an invalid length, the service should fail at the initialization stage with a clear error in the logs. Each secret is encrypted before being written to the database using this Master Key. Upon request, it is decrypted in memory and returned in the response body.Audit Logging (Audit Trail) Any action with secrets (creation, reading by the service, successful or unsuccessful rotation) must be recorded in a separate log file audit.log (or a separate table in the database). Strict Taboo: It is strictly prohibited to record the actual values of secrets in the audit log (neither in plaintext nor in encrypted form).
We have a dedicated server on Hetzner with a website on Docker (+ Laravel framework) Contact with the developers has been lost Need to: - restore and change server access (probably SSH) - recommend a storage location and set up a full server backup with easy recovery, probably not on Hetzner for security - fix the logo that is not displaying for some reason (it's unclear why the file has become inaccessible) Important - there is no website backup, and there is no room for error. We will only consider experienced specialists.