Re: Questions about secret handling in Mesos

2018-04-21 Thread Lawrence Rau
doesn’t seem a great place for a secret; depending on how the host is handling swap and your tolerance for risk of leakage via ram content recovery. ..larry > On Apr 21, 2018, at 9:02 AM, Qian Zhang wrote: > > Hi Aditya, > > Yeah, you are right. `hostSecretPath` is a

Re: Questions about secret handling in Mesos

2018-04-21 Thread Qian Zhang
Hi Aditya, Yeah, you are right. `hostSecretPath` is a sub-directory under agent's runtime dir, and the default value of agent's runtime dir is `/var/run/mesos` which is a tmpfs. So the secret is written to tmpfs on agent host. Regards, Qian Zhang On Sat, Apr 21, 2018 at 8:19 AM, Aditya Bhave