Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

OCI auh+approle and vault-agent #15

Open
gfdsa opened this issue Oct 9, 2020 · 0 comments
Open

OCI auh+approle and vault-agent #15

gfdsa opened this issue Oct 9, 2020 · 0 comments

Comments

@gfdsa
Copy link
Member

gfdsa commented Oct 9, 2020

This does not happen in gcp scenario because the agent keeps trying to authenticate and remains up for systemd. In OCI there is the oci_auth "workaround" that fails and systemd doesn't restart the vault-agent hard enough

11:36

non si authenticano gli vault-agent sui server
controllo
ok, un altro chicken/egg mi lo segno e penso su con calma l'agent sui nodi cluster deve partire do …, di Michael Tabolsky (Ospite).
11:43

ok, un altro chicken/egg
mi lo segno e penso su con calma
l'agent sui nodi cluster deve partire dopo che il cluster e' configurato con la platform
se no, rimane in loop di autenticazione senza token di OCI principal che al momento della sua partenza l'auth_oci non e' ancora attivo nel vault cluster
systemctl restart vault-agent a manina noma su , di Michael Tabolsky (Ospite).

systemctl restart vault-agent a manina
noma su
@asm72 asm72 added this to To do in Caravan Project via automation Oct 22, 2021
@efbar efbar moved this from To do to Backlog in Caravan Project Oct 25, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Caravan Project
  
Backlog
Development

No branches or pull requests

1 participant