re: Where do you keep credentials for your Lambda functions?

re: Am I missing something here ? Because the AWS best practices are to put your db in a private subnet of your VPC so it can't be reached even if the ...

our use case was simply that we have different restapi and etls accessing the same db. or different db for different stages - accessed by lambdas from different environments. therefore we found quite messy dealing with lots of env.whatever-stage files. duplicated in multiple repos. Secretmanager solved our issues

the lambda being hacked and credentials being stolen might be paranoid, dunno. i read it / saw it in the video and struck me, therefore i mentioned it as well. :-)

