Securing GitHub Tokens in a Serverless CodePipeline

Eoin Shanaghy
Nov 18, 2018 · 3 min read

The Systems Manager Parameters Store Attempt

Storing a Secure String with Systems Manager Parameter Store
Doomed Attempt to use Parameter Store Secure Strings in CodePipeline
SSM Secure reference is not supported in: [AWS::CodePipeline::Pipeline/Properties/Stages]

Solving the Problem with Secrets Manager

Storing a GitHub Token in Secrets Manager
Serverless YML/CloudFormation Syntax for Secrets Manager Variables

Eoin Shanaghy

Written by

CTO @fourtheorem https://fourTheorem.com; Co-Author of AI as a Service https://www.manning.com/books/ai-as-a-service

Welcome to a place where words matter. On Medium, smart voices and original ideas take center stage - with no ads in sight. Watch
Follow all the topics you care about, and we’ll deliver the best stories for you to your homepage and inbox. Explore
Get unlimited access to the best stories on Medium — and support writers while you’re at it. Just $5/month. Upgrade