I decided to submit one of my github Actions hacks I did earlier this year as part of this years ActionsHackathon21 contest.
In my original post I demonstrate how we can implement a zero-touch fully automated solution under 15 minutes to rotate all our virtual machines local administrator passwords on a schedule by using a GitHub Actions workflow and a centrally managed Azure key vault. (The technique/concept used in the tutorial is not limited to only Virtual machines. The same concept can be used and applied to almost anything that requires secret rotation).
Here is the link to the original post, enjoy!
😳💥🔥 I know... ITSec Ops workflows are totally WACKY! 🔥💥😳
This repository is used to maintain Azure VM local admin passwords using an Azure Key vault
This repository hosts a github workflow which is used to maintain Azure VM local admin passwords using an Azure Key vault.
See my blog post for full details
Zero-touch fully automated password rotation using Github workflows and Azure key vault.
Use the GitHub marketplace Action
AZURE Virtual machine password rotation has also been made into a GitHub Action which is public on the GitHub marketplace.
For more details. Check it out here: Rotate AZURE Virtual Machine Passwords