Difference between revisions of "Vault"
Jump to navigation
Jump to search
Line 9: | Line 9: | ||
``` | ``` | ||
− | vault operator init | + | vault operator init > vault-init.out |
vault operator unseal | vault operator unseal | ||
``` | ``` | ||
+ | Use at least 3 keys from init.out in unseal | ||
https://www.vaultproject.io/docs/commands/operator/unseal/ | https://www.vaultproject.io/docs/commands/operator/unseal/ | ||
+ | |||
+ | ``` | ||
+ | vault auth enable approle | ||
+ | vault write auth/approle/role/demo bound_cidr_list=10.0.0.0/16 bind_secret_id=false policies=default-policy | ||
+ | ``` |
Revision as of 20:43, 3 March 2020
Password Management Using Hashicorp Vault
- https://devopscube.com/setup-hashicorp-vault-beginners-guide/
- https://learn.hashicorp.com/vault/getting-started/install
- https://www.digitalocean.com/community/tutorials/how-to-securely-manage-secrets-with-hashicorp-vault-on-ubuntu-16-04
- https://github.com/hashicorp/vault-helm/issues/17
vault operator init > vault-init.out vault operator unseal
Use at least 3 keys from init.out in unseal
https://www.vaultproject.io/docs/commands/operator/unseal/
vault auth enable approle vault write auth/approle/role/demo bound_cidr_list=10.0.0.0/16 bind_secret_id=false policies=default-policy