Following up, my primary open questions are: * Should we deprecate the old way of injecting secrets? It wasn't widely used, and it does not work in all cases. (See the PIP for the old mechanism.)
* Should we enable environment variable interpolation by default? It carries some risk, but in a Kubernetes environment, that risk is limited. Thanks, Michael On Fri, Jul 28, 2023 at 4:59 PM Michael Marshall <mmarsh...@apache.org> wrote: > > Hi Pulsar Community, > > This is the discussion thread for PIP > https://github.com/apache/pulsar/pull/20903. > > This PIP will help improve Pulsar Connector Security by giving users > the ability to remove all plaintext secrets from their configurations. > > Thanks, > Michael