Zero trust GitOps: Build a secure, secretless GitOps pipeline

240 · Red Hat · March 13, 2026, 7:32 a.m.
Summary
This blog post discusses the integration of OpenShift GitOps with the external secrets operator (ESO) to enhance security through short-lived tokens for authentication. It emphasizes the importance of zero trust principles by using identity-based access and ensuring minimal privileges, thereby reducing potential breach impacts. The ESO automates credential management and applies to various use cases, making it a powerful tool for administrators aiming to improve their Kubernetes security posture.