In this video, we break down Kubernetes Secrets and the External Secrets Operator (ESO) — what problem it solves, how it works, and how to wire it up with Infisical as your external secrets manager.
We cover:
Why native Kubernetes Secrets aren’t a full secrets management solution
The ESO mental model (SecretStore, ExternalSecret, Kubernetes Secret)
Kubernetes Auth with Infisical
A full end-to-end demo
Production tips for real-world setups
If you’re running Kubernetes in production and need centralized, auditable, and scalable secrets management — this pattern is for you.
Timestamps:
00:00 Intro & Problem
00:46 Native Secrets Issues
02:00 What Is ESO?
02:53 Four Setup Steps
04:19 Demo Overview
05:55 Kubernetes Auth
07:19 Token Review Setup
08:27 Infisical Config
11:27 SecretStore + ExternalSecret
14:04 Secrets Synced
15:06 Production Tips
15:32 Wrap Up
Documentation:
Infisical Docs: https://infisical.com/docs
ESO Docs: https://external-secrets.io/latest/
Reloader: https://github.com/stakater/Reloader
Infisical Kubernetes Auth: https://infisical.com/docs/documentat...
Follow Infisical:
Website: https://infisical.com
LinkedIn: / infisical
GitHub: https://github.com/Infisical
Twitter / X: https://x.com/infisical
Slack: https://infisical.com/slack