- Generate key pair
make key
- Set key
.secret.env
SOPS_AGE_KEY=AGE-SECRET-KEY-xxxxx
PUBLIC_KEY=xxxxx
- Create secret
make secret secret=${xxx}
- Set secret
echo xxx > ./kubernetes/${xxx}.in.txt
- Encrypt secret
make encrypt secret=${xxx}
- Generate manifest
make sops secret=${xxx}
※ If you use it in production, please .gitignore the secret manifest.
- Decrypt secret
make decrypt secret=${xxx}