
Jake and Michael discuss modern infrastructure security practices, focusing on OIDC and the risks of long-lived credentials.
In this episode, Jake and Michael dive into modern infrastructure security practices, sparked by an annual audit and the painful process of rotating AWS IAM tokens. That experience leads into a broader discussion on why long-lived credentials in GitHub Actions are risky, and how OIDC (OpenID Connect) enables a more secure, short-lived, role-based alternative. Show links Scout Suite OpenID Connect (OIDC) Laravel Forge Laravel Horizon Scramble Claude LoRA (Low-Rank Adaptation)
Explore listener stats, chart rankings, contacts and more on the North Meets South Web Podcast podcast page.