Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[GH Request] Rotate openedx-github-action-ecr-user key #842

Closed
katebygrace opened this issue Aug 1, 2023 · 10 comments
Closed

[GH Request] Rotate openedx-github-action-ecr-user key #842

katebygrace opened this issue Aug 1, 2023 · 10 comments
Assignees
Labels
github-request Request for change to access level or settings in the openedx GitHub organization.

Comments

@katebygrace
Copy link

Firm Name

2u

Urgency

Medium (< 2 weeks)

Problem/Request

I'd like to rotate the AWS access key for the openedx ECR user. I have the new value (and it's attached to the same user); let me know how to transmit this. It should be an easy swap for anyone with access to the "secrets" section in github settings.

Reasoning

Security :) (feel free to message me @knachbar on slack for details!)

@katebygrace katebygrace added the github-request Request for change to access level or settings in the openedx GitHub organization. label Aug 1, 2023
@openedx-workflow-automation
Copy link

Thank you for your report! @openedx/axim-oncall will triage within a business day. Simple requests usually take 2-3 business days to resolve; more complex requests could take longer.

@ormsbee ormsbee self-assigned this Aug 1, 2023
@katebygrace
Copy link
Author

Hey @ormsbee ! What's a good way to transfer a key your way?

@ormsbee
Copy link

ormsbee commented Aug 7, 2023

@katebygrace: Do you have access to the Keeper folder shared between 2U and Axim/tCRIL named "edx-platform GitHub Move"? That's where we shared the credential the last time–could you please add a new entry for this one?

Thank you.

@katebygrace
Copy link
Author

@ormsbee I don't, for some reason; can you add me? knachbar@2u.com

@ormsbee
Copy link

ormsbee commented Aug 8, 2023

I'd added you. FWIW, @adzuci is the owner of that folder.

@brian-smith-tcril
Copy link

@katebygrace do you have the access you need now? Is there something more that needs to happen or can I close this issue out?

@katebygrace
Copy link
Author

Heyo, was out, looking now

@katebygrace
Copy link
Author

Hmm, I still don't see it, @matthugs doesnt have access either

@katebygrace
Copy link
Author

finally got permissions, or added a new record in there called 2023-openedx-github-action-ecr-user

let me know when thats rotated so i can decommision the old one @brian-smith-tcril / @ormsbee

@brian-smith-tcril
Copy link

Worked through this with @katebygrace in DMs and everything should be all good now!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
github-request Request for change to access level or settings in the openedx GitHub organization.
Projects
Status: Done
Development

No branches or pull requests

3 participants