User Tools

Site Tools


hashicorp_vault

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
hashicorp_vault [2026/02/14 17:23]
val
hashicorp_vault [2026/02/25 19:53] (current)
val [Vault policy]
Line 41: Line 41:
  
 / # vault kv put secret/​ansible/​openvpn1 \ / # vault kv put secret/​ansible/​openvpn1 \
-username=student ​+username=vagrant ​
-password=password+password=strongpassword
  
 / # vault kv list secret/​ansible/​ / # vault kv list secret/​ansible/​
Line 84: Line 84:
 </​code>​ </​code>​
 ===== Vault policy ===== ===== Vault policy =====
 +
 +  * [[http://​server.corpX.un:​8200]]
 +
 <​code>​ <​code>​
 / # vault policy write ansible-openvpn1 - <<EOF / # vault policy write ansible-openvpn1 - <<EOF
Line 164: Line 167:
 server|gate#​ VAULT_ADDR='​http://​server.corpX.un:​8200'​ server|gate#​ VAULT_ADDR='​http://​server.corpX.un:​8200'​
 server|gate# ​ VAULT_TOKEN=hKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKk server|gate# ​ VAULT_TOKEN=hKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKk
-server|gate# ​ export VAULT_TOKEN=hKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKKk 
  
 / # vault write auth/​token/​roles/​ansible-openvpn1-role allowed_policies=ansible-openvpn1 bound_cidrs="​192.168.X.0/​24"​ / # vault write auth/​token/​roles/​ansible-openvpn1-role allowed_policies=ansible-openvpn1 bound_cidrs="​192.168.X.0/​24"​
hashicorp_vault.1771078988.txt.gz · Last modified: 2026/02/14 17:23 by val