- Find out etcd procecss id
ps -ef | grep etcd
- Go to process directory of ectd
cd /proc/2626577/fd
- List the files and look for “/var/lib/etcd/member/snap/db“
ls -ltr | grep db
- To read any secret that is currently created by user in k8
#create secret
kubectl create secret generic secret1 --from-literal=secretname=helloworld
#read secret directly from etcd
cat /var/lib/etcd/member/snap/db | strings | grep secret1 -C 10
Encrypting Secret Data at Rest – https://kubernetes.io/docs/tasks/administer-cluster/encrypt-data/