14. Open Service
Broker
• Write a Spring Boot App!
• Same code for any OSB API platform
• Loose coupling between app and secrets
• https://www.openservicebrokerapi.org/
16. Broker à
[backend]
• Plan your layout
• Simplest: follow the TAS
Org/Space/App model
• Consider a separate master space
• Plan for unique & shared secrets
17. Broker à
[backend]
• Trust but verify
• Inspect the bind request
• Use the environment
• TAS: Org/Space/App
• Kube: Namespace
18. Broker à
Credhub
• API: https://credhub-api.cfapps.io/
• Set permissions!!
• Return a Credhub Ref