Documentation

​
​

Development

User Acquisition

Monetization

Industry

Self-Hosted Deployment

Amazon Web Services

Microsoft Azure

On premises

vpctl

Self-Hosted Deployment

​
​
Self-Hosted Deployment
  • Overview
  • Amazon Web Services
  • Microsoft Azure
  • On premises
  • Administration
  • Security
  • vpctl
    • vpctl Architecture
    • Installation
    • Manifest reference
    • vpctl commands
      • Artifact
      • Cluster
      • Configure
      • Manifest
      • Release
      • Secret
    • Troubleshooting
    • Changelog
  1. Self-Hosted Deployment (previously called Unity Virtual Private Cloud)
  2. vpctl command-line tool
  3. vpctl command reference

vpctl secret commands

Generate and deploy Kubernetes Secret manifests from a secrets.import.yaml input
Read time 2 minutes
Last updated 8 days ago

Use the
secret
command group to render Kubernetes
Secret
manifests from your import file and apply them to your cluster.

Generate secrets

Create Kubernetes secret YAML files from your secret definitions. For the import file format, refer to
secrets.import.example.yaml
which is shipped in the release package.
vpctl secret generate --import secrets.import.yaml --use-defaults
Parameters:
  • --import
    : Path to the secrets import file. See
    secrets.import.example.yaml
    for the format.
  • --use-defaults
    : Use default values or auto-generate values without prompts (non-interactive mode). If a required field has no default or auto-generate option, the tool writes
    TBD
    and logs a warning so you can update it before deployment.
  • --output
    : Output file path (defaults to
    secrets.yaml
    ).
  • --name
    : Generate only the specified secret by name.
  • --extracted-release
    : Path to the extracted release directory (defaults to
    ./extracted-release
    ).
  • --clean-output
    : Clear the output file before generating (default: false).
  • --skip-version-check
    : Skip the vpctl version compatibility check against the release package.
  • --persist <path>
    : Save generated values to an import-format file at
    <path>
    for reuse in subsequent runs. The path is required and has no default: in vpctl 0.11.0 and newer, passing the bare flag exits with an error. On later runs, the tool loads the persisted file and reuses existing values without regenerating them.
Example:
vpctl secret generate --import secrets.import.yaml --use-defaults --output ./generated-secrets.yaml

Deploy secrets to Kubernetes

Apply the generated secrets to your Kubernetes cluster:
vpctl secret deploy
Common options:
  • --file
    : Path to the secrets YAML file (defaults to
    secrets.yaml
    ).
  • --dry-run
    : Preview the kubectl command without executing it.
  • --context
    : Kubernetes context to use.
  • --namespace
    : Kubernetes namespace (overrides the namespace in the secret YAML).
Example:
vpctl secret deploy --file ./generated-secrets.yaml --namespace production --dry-run

Copyright © 2026 Unity Technologies
LegalPrivacy PolicyCookiesDocumentation Terms of UseDo Not Sell or Share My Personal InformationYour Privacy Choices (Cookie Settings)

"Unity", Unity logos, and other Unity trademarks are trademarks or registered trademarks of Unity Technologies or its affiliates in the U.S and elsewhere (more info here). Other names or brands are trademarks of their respective owners.

Some pages are machine-translated for convenience, and may contain inaccuracies. In the event of conflicting information, the English version is authoritative.

  • On this page
    • Generate secrets

    • Deploy secrets to Kubernetes


Report a problem with this page