A Secret holds sensitive data such as passwords, API tokens, TLS keys and registry credentials. It is used much like a ConfigMap, but Kubernetes treats it more carefully: it can be restricted separately with RBAC, kubelets only receive Secrets for Pods scheduled on their node, and Secret volumes are stored in memory (tmpfs) on the node rather than on disk.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 6 more sections, 5 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.