Skip to content
This repository

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP
Browse code

update_readme

  • Loading branch information...
commit ca9c28cca57d2d19b52760835cd6e5bf5531d856 1 parent 5dde51f
Will Leinweber authored

Showing 1 changed file with 8 additions and 11 deletions. Show diff stats Hide diff stats

  1. +8 11 README.md
19 README.md
Source Rendered
@@ -7,25 +7,22 @@ Automatic and graceful secure key rotation as a service (AaGSKRaaS)
7 7 $ heroku addons:add securekey
8 8 -----> Adding securekey to will... done, v216 (free)
9 9
10   - $ heroku config -s | grep SECURE_KEY
11   - SECURE_KEY=59b26bion3ow0o46hkw8laij99sm4gxe766q5iztumy7pz6o2m
12   - SECURE_KEY_OLD=omhltkx5cucsj9wbxw5j486uwoka3ckkjznk6fpowwywlblu6
  10 + $ heroku config -s | grep SECURE_KEYS
  11 + SECURE_KEYS=59b26bion3ow0o46hkw8laij99sm4gxe766q5iztumy7pz6o2m,omhltkx5cucsj9wbxw5j486uwoka3ckkjznk6fpowwywlblu6
13 12
14 13 ...time passes...
15 14
16   - $ heroku config -s | grep SECURE_KEY
17   - SECURE_KEY=4pndhwz8dk57la2fqz0rdakseofsnzqbuz8a0vcwirjkpypcb7
18   - SECURE_KEY_OLD=59b26bion3ow0o46hkw8laij99sm4gxe766q5iztumy7pz6o2m
  15 + $ heroku config -s | grep SECURE_KEYS
  16 + SECURE_KEYS=4pndhwz8dk57la2fqz0rdakseofsnzqbuz8a0vcwirjkpypcb7,59b26bion3ow0o46hkw8laij99sm4gxe766q5iztumy7pz6o2m
19 17
20 18 ...time passes...
21 19
22   - $ heroku config -s | grep SECURE_KEY
23   - SECURE_KEY=5xhuqknssevprev03qivap4d4se4dx5xardk95y6enz7uru7eo
24   - SECURE_KEY_OLD=4pndhwz8dk57la2fqz0rdakseofsnzqbuz8a0vcwirjkpypcb7
  20 + $ heroku config -s | grep SECURE_KEYS
  21 + SECURE_KEYS=5xhuqknssevprev03qivap4d4se4dx5xardk95y6enz7uru7eo,4pndhwz8dk57la2fqz0rdakseofsnzqbuz8a0vcwirjkpypcb7
25 22
26 23 ## Why?
27 24
28   -Because you're not rotating your keys at all. And they're probably checked
  25 +Because you're not rotating your keys at all. And they're probably checked
29 26 into your repo, which is bad. Add this add-on, and never think about it again.
30 27
31 28 You need to keep and accept the old key for a while, or your users will lose
@@ -35,5 +32,5 @@ takes care of that for you. A rails patch is coming soon.
35 32 ## A Heroku add-on, running on Heroku, made with Heroku add-ons
36 33
37 34 It currently uses the free shared postgres, pgbackups, and scheduler add-ons.
38   -The code is over at [github.com/will/securekey](http://github.com/will/securekey).
  35 +The code is over at [github.com/will/securekey](http://github.com/will/securekey).
39 36

0 comments on commit ca9c28c

Please sign in to comment.
Something went wrong with that request. Please try again.